Known vulnerabilities in Oracle Communications Session Router
Vendor:
Oracle
Software:
Oracle Communications Session Router
Software CPE:
cpe:2.3:a:oracle:session_router:*:*:*:*:*:*:*:*
Website:
https://www.oracle.com
Total vulnerabilities:
5
Public exploits:
2
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU66153 - Heap-based Buffer Overflow CVE-2022-37434 |
CWE-122 | High | - | 07.08.2022 | - | ||
| #VU48896 - NULL Pointer Dereference CVE-2020-1971 |
CWE-476 | Medium | - | 08.12.2020 | - | ||
| #VU41989 - Improper Control of Generation of Code ('Code Injection') CVE-2020-8203 |
CWE-94 | Medium | - | 10.08.2020 | - | ||
| #VU18813 - Integer overflow CVE-2019-11477 |
CWE-190 | Medium | - | 17.06.2019 | - | ||
| #VU17860 - Use of a Broken or Risky Cryptographic Algorithm CVE-2019-1559 |
CWE-327 | Low | - | 26.02.2019 | - |