Known vulnerabilities in Siebel CRM Cloud Applications

Vendor: Oracle
Software CPE: cpe:2.3:a:oracle:siebel_crm_cloud_applications:*:*:*:*:*:*:*:*
Total vulnerabilities: 12
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Siebel CRM Cloud Applications Siebel CRM Cloud Applications is affected by 12 known vulnerabilities: 1 high, 7 medium, 4 low Critical High Medium Low

Vulnerabilities (12)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU120990 - Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2025-69223
CWE-409 Medium
No
No
- 06.01.2026 -
#VU120193 - Integer overflow
CVE-2025-13601
CWE-190 Medium
No
No
- 18.12.2025 -
#VU118203 - Improper Check for Unusual or Exceptional Conditions
CVE-2025-8869
CWE-754 Medium
No
No
- 07.11.2025 -
#VU117441 - Improper input validation
CVE-2025-53547
CWE-20 Low
No
No
- 22.10.2025 -
#VU114093 - Incorrect Calculation
CVE-2025-5372
CWE-682 Low
No
No
- 14.08.2025 -
#VU113156 - Memory corruption
CVE-2025-6965
CWE-119 Medium
No
No
- 22.07.2025 -
#VU113069 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-53643
CWE-444 Medium
No
No
- 18.07.2025 -
#VU100998 - Incorrect Authorization
CVE-2024-9902
CWE-863 Low
No
No
- 27.11.2024 -
#VU96003 - UNIX Symbolic Link (Symlink) Following
CVE-2024-42367
CWE-61 High
No
No
- 14.08.2024 -
#VU84381 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-5764
CWE-94 Medium
No
No
- 13.12.2023 -
#VU83631 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-47627
CWE-444 Medium
No
No
24.2 04.12.2023 SB2023120403
SB2023120406
SB2023120407
and 15 more
#VU80585 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-41105
CWE-22 Low
No
No
- 11.09.2023 -