Known vulnerabilities in Siebel CRM Cloud Applications

Vendor: Oracle
Software CPE: cpe:2.3:a:oracle:siebel_crm_cloud_applications:*:*:*:*:*:*:*:*
Total vulnerabilities: 12
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Siebel CRM Cloud Applications Siebel CRM Cloud Applications is affected by 12 known vulnerabilities: 1 high, 7 medium, 4 low Critical High Medium Low

Vulnerabilities (12)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU120990 - Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2025-69223
CWE-409 Medium
No
No
- 06.01.2026 SB2026010643
SB2026012661
SB2026012855
and 15 more
#VU120193 - Integer overflow
CVE-2025-13601
CWE-190 Medium
No
No
- 18.12.2025 SB2025121853
SB2025121874
SB2025121875
and 44 more
#VU118203 - Improper Check for Unusual or Exceptional Conditions
CVE-2025-8869
CWE-754 Medium
No
No
- 07.11.2025 SB2025110747
SB2025110755
SB2025112220
and 24 more
#VU117441 - Improper input validation
CVE-2025-53547
CWE-20 Low
No
No
- 22.10.2025 SB2025102218
SB2025102244
SB2025102245
and 4 more
#VU114093 - Incorrect Calculation
CVE-2025-5372
CWE-682 Low
No
No
- 14.08.2025 SB2025081494
SB2025081495
SB2025081532
and 21 more
#VU113156 - Memory corruption
CVE-2025-6965
CWE-119 Medium
No
No
- 22.07.2025 SB2025072254
SB2025072807
SB2025072890
and 100 more
#VU113069 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-53643
CWE-444 Medium
No
No
- 18.07.2025 SB2025071857
SB2025090377
SB2025091303
and 15 more
#VU100998 - Incorrect Authorization
CVE-2024-9902
CWE-863 Low
No
No
- 27.11.2024 SB2024112745
SB2024112746
SB2024120371
and 15 more
#VU96003 - UNIX Symbolic Link (Symlink) Following
CVE-2024-42367
CWE-61 High
No
No
- 14.08.2024 SB2024081446
SB2024100968
SB2024101875
and 3 more
#VU84381 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-5764
CWE-94 Medium
No
No
- 13.12.2023 SB2023121315
SB2023121316
SB2023121317
and 16 more
#VU83631 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-47627
CWE-444 Medium
No
No
24.2 04.12.2023 SB2023120403
SB2023120406
SB2023120407
and 15 more
#VU80585 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-41105
CWE-22 Low
No
No
- 11.09.2023 SB2023082825
SB2023100328
SB2023100362
and 18 more