Vulnerabilities in Oracle

224 results
Vexday analysis

Com 224 CVEs catalogadas e nenhuma em exploração ativa confirmada pelo CISA KEV, a taxa de exploração da Oracle neste conjunto está abaixo da média geral do catálogo. Apesar da ausência de vulnerabilidades críticas formalmente classificadas e de novas ocorrências nos últimos 90 dias, a presença de CVE-2017-3248 com EPSS de 0,973 indica probabilidade muito elevada de exploração ativa segundo os modelos preditivos, exigindo atenção redobrada de equipes que ainda não aplicaram as correções correspondentes. Três vulnerabilidades possuem PoC pública disponível, o que amplia a superfície de risco para organizações que mantêm versões desatualizadas. O conjunto de dados sugere um perfil de risco residual concentrado em vulnerabilidades mais antigas, onde a janela de remediação já foi amplamente ultrapassada.

CVE-2017-3314Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported vEPSS 1.4%CVE-2017-3249Vulnerability in the Oracle GlassFish Server component of Oracle Fusion Middleware (subcomponent: Security). Supported versions that are affEPSS 1.4%CVE-2017-3283Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that EPSS 1.4%CVE-2017-3282Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that EPSS 1.4%CVE-2017-3265Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that are affected are 5.5.EPSS 1.4%CVE-2017-3281Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that EPSS 1.4%CVE-2016-8318Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption). Supported versions that are affectEPSS 1.3%CVE-2017-3319Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: X Plugin). Supported versions that are affected are 5.7.1EPSS 1.3%CVE-2016-8322Vulnerability in the Oracle FLEXCUBE Core Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported versioEPSS 1.3%CVE-2016-8320Vulnerability in the Oracle FLEXCUBE Enterprise Limits and Collateral Management component of Oracle Financial Services Applications (subcomEPSS 1.3%CVE-2016-8319Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Core). Supported EPSS 1.3%CVE-2016-8282Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services Applications (subcomponent: Product / InstrumentEPSS 1.3%CVE-2016-8302Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported vEPSS 1.3%CVE-2017-3263Vulnerability in the Primavera P6 Enterprise Project Portfolio Management component of Oracle Primavera Products Suite (subcomponent: Team MEPSS 1.3%CVE-2017-3250Vulnerability in the Oracle GlassFish Server component of Oracle Fusion Middleware (subcomponent: Security). Supported versions that are affEPSS 1.3%CVE-2017-3388Vulnerability in the Oracle Advanced Outbound Telephony component of Oracle E-Business Suite (subcomponent: User Interface). Supported versiEPSS 1.3%CVE-2016-5614Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services Applications (subcomponent: Product / InstrumentEPSS 1.3%CVE-2017-3352Vulnerability in the Oracle Marketing component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affecEPSS 1.2%CVE-2017-3394Vulnerability in the Oracle Advanced Outbound Telephony component of Oracle E-Business Suite (subcomponent: User Interface). Supported versiEPSS 1.2%CVE-2017-3375Vulnerability in the Oracle Advanced Outbound Telephony component of Oracle E-Business Suite (subcomponent: User Interface). Supported versiEPSS 1.2%