This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Oracle First view 2000-03-15
Product Application Server Last view 2020-04-21
Version Type
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:a:oracle:application_server:10.1.2.0.2:*:*:*:*:*:*:* 54
cpe:2.3:a:oracle:application_server:9.0.4.3:*:*:*:*:*:*:* 49
cpe:2.3:a:oracle:application_server:1.0.2.2:*:*:*:*:*:*:* 34
cpe:2.3:a:oracle:application_server:1.0.2:*:*:*:*:*:*:* 31
cpe:2.3:a:oracle:application_server:9.0.2.3:*:*:*:*:*:*:* 29
cpe:2.3:a:oracle:application_server:9.0.3.1:*:*:*:*:*:*:* 28
cpe:2.3:a:oracle:application_server:10.1.2.2:*:*:*:*:*:*:* 26
cpe:2.3:a:oracle:application_server:9.0.2:*:*:*:*:*:*:* 26
cpe:2.3:a:oracle:application_server:9.0.4.2:*:*:*:*:*:*:* 25
cpe:2.3:a:oracle:application_server:9.0.4.1:*:*:*:*:*:*:* 23
cpe:2.3:a:oracle:application_server:*:*:*:*:*:*:*:* 21
cpe:2.3:a:oracle:application_server:10.1.2.1.0:*:*:*:*:*:*:* 20
cpe:2.3:a:oracle:application_server:9.0.2.0.1:*:*:*:*:*:*:* 20
cpe:2.3:a:oracle:application_server:9.0.2.0.0:*:*:*:*:*:*:* 20
cpe:2.3:a:oracle:application_server:9.0.2.1:*:*:*:*:*:*:* 19
cpe:2.3:a:oracle:application_server:9.0.3:*:*:*:*:*:*:* 17
cpe:2.3:a:oracle:application_server:9.0.2.2:*:*:*:*:*:*:* 16
cpe:2.3:a:oracle:application_server:1.0.2.1s:*:*:*:*:*:*:* 15
cpe:2.3:a:oracle:application_server:10.1.2.0.0:*:*:*:*:*:*:* 14
cpe:2.3:a:oracle:application_server:10.1.2.0.1:*:*:*:*:*:*:* 13
cpe:2.3:a:oracle:application_server:9.0.4:*:*:*:*:*:*:* 12
cpe:2.3:a:oracle:application_server:9.0.4.0:*:*:*:*:*:*:* 12
cpe:2.3:a:oracle:application_server:10.1.3.0.0:*:*:*:*:*:*:* 12
cpe:2.3:a:oracle:application_server:10.1.2.3:*:*:*:*:*:*:* 11
cpe:2.3:a:oracle:application_server:10.1.2.2.0:*:*:*:*:*:*:* 10
cpe:2.3:a:oracle:application_server:10.1.3.3.0:*:*:*:*:*:*:* 10
cpe:2.3:a:oracle:application_server:10.1.3.1.0:*:*:*:*:*:*:* 10
cpe:2.3:a:oracle:application_server:10.1.0.2:*:*:*:*:*:*:* 7
cpe:2.3:a:oracle:application_server:1.0.2.2.2:*:*:*:*:*:*:* 7
cpe:2.3:a:oracle:application_server:10.1.3.3:*:*:*:*:*:*:* 7
cpe:2.3:a:oracle:application_server:10.1.0.3:*:*:*:*:*:*:* 6
cpe:2.3:a:oracle:application_server:10.1.3.4:*:*:*:*:*:*:* 6
cpe:2.3:a:oracle:application_server:1.0:*:*:*:*:*:*:* 6
cpe:2.3:a:oracle:application_server:9.0:*:*:*:*:*:*:* 6
cpe:2.3:a:oracle:application_server:10.1.0.3.1:*:*:*:*:*:*:* 6
cpe:2.3:a:oracle:application_server:1.0.2.2:r1:*:*:*:*:*:* 5
cpe:2.3:a:oracle:application_server:10.1.3.2.0:*:*:*:*:*:*:* 5
cpe:2.3:a:oracle:application_server:10.1.4.1:*:*:*:*:*:*:* 5
cpe:2.3:a:oracle:application_server:10.1.2:*:*:*:*:*:*:* 5
cpe:2.3:a:oracle:application_server:10.1.3.0:*:*:*:*:*:*:* 5
cpe:2.3:a:oracle:application_server:10.1.2.3.0:*:*:*:*:*:*:* 5
cpe:2.3:a:oracle:application_server:10.1.3.2.1:*:*:*:*:*:*:* 5
cpe:2.3:a:oracle:application_server:10.1.3.3.3:*:*:*:*:*:*:* 5
cpe:2.3:a:oracle:application_server:1.0.0:*:*:*:*:*:*:* 4
cpe:2.3:a:oracle:application_server:1.0.2.2:r2:*:*:*:*:*:* 4
cpe:2.3:a:oracle:application_server:0.9.8:*:*:*:*:*:*:* 4
cpe:2.3:a:oracle:application_server:1.0.2.1:*:*:*:*:*:*:* 4
cpe:2.3:a:oracle:application_server:1.0.2.0:*:*:*:*:*:*:* 4
cpe:2.3:a:oracle:application_server:10.1.3.1:*:*:*:*:*:*:* 4
cpe:2.3:a:oracle:application_server:1.0.1:*:*:*:*:*:*:* 4

Related : CVE

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
  Date Alert Description
7.5 2020-04-21 CVE-2020-1967

Server or client applications that call the SSL_check_chain() function during or after a TLS 1.3 handshake may crash due to a NULL pointer dereference as a result of incorrect handling of the "signature_algorithms_cert" TLS extension. The crash occurs if an invalid or unrecognised signature algorithm is received from the peer. This could be exploited by a malicious peer in a Denial of Service attack. OpenSSL version 1.1.1d, 1.1.1e, and 1.1.1f are affected by this issue. This issue did not affect OpenSSL versions prior to 1.1.1d. Fixed in OpenSSL 1.1.1g (Affected 1.1.1d-1.1.1f).

4.7 2018-11-15 CVE-2018-5407

Simultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'.

5.9 2018-10-29 CVE-2018-0735

The OpenSSL ECDSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in OpenSSL 1.1.0j (Affected 1.1.0-1.1.0i). Fixed in OpenSSL 1.1.1a (Affected 1.1.1).

4.3 2010-01-12 CVE-2010-0070

Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Application Server 10.1.2.3 and 10.1.3.4 allows remote attackers to affect integrity via unknown vectors.

5 2010-01-12 CVE-2010-0067

Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Application Server 10.1.2.3 and 10.1.3.4 allows remote attackers to affect confidentiality via unknown vectors.

5 2010-01-12 CVE-2010-0066

Unspecified vulnerability in the Access Manager Identity Server component in Oracle Application Server 7.0.4.3 and 10.1.4.2 allows remote attackers to affect integrity via unknown vectors.

1 2010-01-12 CVE-2009-3412

Unspecified vulnerability in the Unzip component in Oracle Database 9.2.0.8, 9.2.0.8DV, and 10.1.0.5; and Oracle Application Server 10.1.2.3; allows local users to affect confidentiality via unknown vectors.

4.3 2009-10-22 CVE-2009-3407

Unspecified vulnerability in the Portal component in Oracle Application Server 10.1.2.3 and 10.1.4.2 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2009-0974 and CVE-2009-0983.

4.3 2009-10-22 CVE-2009-1999

Unspecified vulnerability in the Business Intelligence Enterprise Edition component in unspecified Oracle Application Server versions allows remote attackers to affect integrity via unknown vectors.

1.7 2009-10-22 CVE-2009-1990

Unspecified vulnerability in the Business Intelligence Enterprise Edition component in Oracle Application Server 10.1.3.4.1 allows local users to affect confidentiality via unknown vectors.

4 2009-09-14 CVE-2008-7237

Unspecified vulnerability in the Oracle Internet Directory component in Oracle Application Server 9.0.4.3 and 10.1.2.2 allows remote authenticated users to affect confidentiality via unknown vectors, aka AS06.

4.3 2009-09-14 CVE-2008-7236

Unspecified vulnerability in the Oracle JDeveloper component in Oracle Application Server 10.1.2.2 and 10.1.3.1 allows remote attackers to affect integrity via unknown vectors, aka AS05.

4.3 2009-09-14 CVE-2008-7235

Unspecified vulnerability in the Oracle Forms component in Oracle Application Server 10.1.2.2 and E-Business Suite 12.0.3 allows remote attackers to affect integrity via unknown vectors, aka AS04.

6.8 2009-09-14 CVE-2008-7234

Unspecified vulnerability in the Oracle BPEL Worklist Application component in Oracle Application Server 10.1.2.2 and 10.1.3.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, aka AS03.

9.3 2009-09-14 CVE-2008-7233

Unspecified vulnerability in the E-Business Application client, as used in Oracle Application Server 1.1.8.26 and E-Business Suite 11.5.10.2, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Oracle Jinitiator component, aka AS02.

4.3 2009-07-14 CVE-2009-1976

Unspecified vulnerability in the HTTP Server component in Oracle Application Server 10.1.2.3 allows remote attackers to affect integrity via unknown vectors.

5 2009-07-14 CVE-2009-0217

The design of the W3C XML Signature Syntax and Processing (XMLDsig) recommendation, as implemented in products including (1) the Oracle Security Developer Tools component in Oracle Application Server 10.1.2.3, 10.1.3.4, and 10.1.4.3IM; (2) the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, and 8.1 SP6; (3) Mono before 2.4.2.2; (4) XML Security Library before 1.2.12; (5) IBM WebSphere Application Server Versions 6.0 through 6.0.2.33, 6.1 through 6.1.0.23, and 7.0 through 7.0.0.1; (6) Sun JDK and JRE Update 14 and earlier; (7) Microsoft .NET Framework 3.0 through 3.0 SP2, 3.5, and 4.0; and other products uses a parameter that defines an HMAC truncation length (HMACOutputLength) but does not require a minimum for this length, which allows attackers to spoof HMAC-based signatures and bypass authentication by specifying a truncation length with a small number of bits.

4 2009-04-15 CVE-2009-1017

Unspecified vulnerability in the BI Publisher component in Oracle Application Server 5.6.2, 10.1.3.2.1, 10.1.3.3.3, and 10.1.3.4 allows remote authenticated users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2009-0994.

4.4 2009-04-15 CVE-2009-1011

Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML. NOTE: the previous information was obtained from the April 2009 CPU. Oracle has not commented on reliable researcher claims that this issue is for multiple integer overflows in a function that parses an optional data stream within a Microsoft Office file, leading to a heap-based buffer overflow.

4.4 2009-04-15 CVE-2009-1010

Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1008.

4.4 2009-04-15 CVE-2009-1009

Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.1.9 allows local users to affect confidentiality, integrity, and availability, related to HTML.

4.4 2009-04-15 CVE-2009-1008

Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1010.

4 2009-04-15 CVE-2009-0996

Unspecified vulnerability in the BI Publisher component in Oracle Application Server 10.1.3.2.1, 10.1.3.3.3, and 10.1.3.4 allows remote authenticated users to affect confidentiality via unknown vectors.

4 2009-04-15 CVE-2009-0994

Unspecified vulnerability in the BI Publisher component in Oracle Application Server 5.6.2, 10.1.3.2.1, 10.1.3.3.3, and 10.1.3.4 allows remote authenticated users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2009-1017.

7.5 2009-04-15 CVE-2009-0993

Unspecified vulnerability in the OPMN component in Oracle Application Server 10.1.2.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the April 2009 CPU. Oracle has not commented on reliable researcher claims that this issue is a format string vulnerability that allows remote attackers to execute arbitrary code via format string specifiers in an HTTP POST URI, which are not properly handled when logging to opmn/logs/opmn.log.

CWE : Common Weakness Enumeration

%idName
13% (2) CWE-255 Credentials Management
13% (2) CWE-79 Failure to Preserve Web Page Structure ('Cross-site Scripting')
6% (1) CWE-476 NULL Pointer Dereference
6% (1) CWE-399 Resource Management Errors
6% (1) CWE-327 Use of a Broken or Risky Cryptographic Algorithm
6% (1) CWE-287 Improper Authentication
6% (1) CWE-264 Permissions, Privileges, and Access Controls
6% (1) CWE-203 Information Exposure Through Discrepancy
6% (1) CWE-200 Information Exposure
6% (1) CWE-131 Incorrect Calculation of Buffer Size
6% (1) CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer
6% (1) CWE-89 Improper Sanitization of Special Elements used in an SQL Command ('...
6% (1) CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path ...

CAPEC : Common Attack Pattern Enumeration & Classification

id Name
CAPEC-33 HTTP Request Smuggling
CAPEC-47 Buffer Overflow via Parameter Expansion
CAPEC-100 Overflow Buffers
CAPEC-105 HTTP Request Splitting
CAPEC-123 Buffer Attacks
CAPEC-198 Cross-Site Scripting in Error Pages

Oval Markup Language : Definitions

OvalID Name
oval:org.mitre.oval:def:8717 HP-UX Running Java, Remote Increase in Privilege, Denial of Service and Other...
oval:org.mitre.oval:def:7932 DSA-1849 xml-security-c -- design flaw
oval:org.mitre.oval:def:7158 XML Signature HMAC Truncation Authentication Bypass Vulnerability
oval:org.mitre.oval:def:13798 DSA-1849-1 xml-security-c -- design flaw
oval:org.mitre.oval:def:10186 The design of the W3C XML Signature Syntax and Processing (XMLDsig) recommend...
oval:org.mitre.oval:def:22980 ELSA-2009:1428: xmlsec1 security update (Moderate)
oval:org.mitre.oval:def:29320 RHSA-2009:1428 -- xmlsec1 security update (Moderate)

SAINT Exploits

Description Link
Oracle MD2 component SDO_CODE_SIZE buffer overflow More info here

Open Source Vulnerability Database (OSVDB)

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
61736 Oracle Application Server Containers for J2EE Unspecified Remote Issue
61735 Oracle Application Server Containers for J2EE Unspecified Remote Information ...
61734 Oracle Application Server Access Manager Identity Server Unspecified Remote I...
61730 Oracle Database Unzip Unspecified Local Information Disclosure
59558 Oracle Application Server XSQL Servlet Direct Request Configuration File Disc...
59118 Oracle Application Server Business Intelligence Enterprise Edition HTTP Unspe...
59117 Oracle Application Server Business Intelligence Enterprise Edition Unspecifie...
59116 Oracle Application Server Portal Unspecified Remote Issue
56243 W3C XML Signature Syntax and Processing (XMLDsig) HMACOutputLength Signature ...
55907 Oracle BEA WebLogic Server Web Services Package HMACOutputLength Signature Sp...
55896 Oracle Application Server HTTP Server Unspecified Remote Issue
55895 Oracle Application Server Security Developer Tools HMACOutputLength Signature...
53752 Oracle Application Server Portal Unspecified Remote Issue (CVE-2009-0983)
53751 Oracle Application Server Portal Unspecified Remote Issue (CVE-2009-0974)
53750 Oracle Outside In Technology Microsoft Office File Optional Data Stream Parsi...
53749 Oracle Outside In Technology Microsoft Office Spreadsheet Record Handling Ove...
53748 Oracle Outside In Technology Microsoft Excel Spreadsheet Record Handling Remo...
53747 Oracle Outside In Technology HTML Export Unspecified Issue (CVE-2009-1008)
53746 Oracle Application Server BI Publisher Unspecified Remote Information Disclos...
53745 Oracle Application Server BI Publisher Unspecified Remote Information Disclos...
53744 Oracle Application Server BI Publisher Unspecified Remote Information Disclos...
53743 Oracle Application Server BI Publisher Unspecified Remote Issue (CVE-2009-0990)
53742 Oracle Application Server BI Publisher Unspecified Remote Issue (CVE-2009-0989)
53741 Oracle Application Server Oracle Process Manager and Notification (opmn) Daem...
51335 Oracle Application Server Portal Unspecified Remote Issue

ExploitDB Exploits

id Description
24353 Oracle 9i Multiple Unspecified Vulnerabilities
17393 Oracle HTTP Server XSS Header Injection
2951 Oracle <= 9i / 10g (extproc) - Local/Remote Command Execution Exploit

OpenVAS Exploits

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
2012-08-10 Name : Gentoo Security Advisory GLSA 201206-13 (mono mono-debugger)
File : nvt/glsa_201206_13.nasl
2011-12-07 Name : Oracle Database Server and Application Server Ultra Search Component Unspecif...
File : nvt/gb_oracle_database_n_appln_server_ultra_serach_comp_unspecified_vuln.nasl
2011-12-07 Name : Oracle Database Server and Application Server Multiple Unspecified Vulnerabil...
File : nvt/gb_oracle_database_n_appln_server_pl_sql_cmd_exec_vuln.nasl
2011-12-07 Name : Oracle Database Server and Application Server Multiple Unspecified Vulnerabil...
File : nvt/gb_oracle_database_n_appln_server_mult_unspecified_vuln.nasl
2011-12-07 Name : Oracle Database Server Multiple Unspecified Vulnerabilities - Jan 08
File : nvt/gb_oracle_database_mult_unspecified_vuln_jan08.nasl
2011-12-07 Name : Oracle Database Server Multiple Unspecified Vulnerabilities
File : nvt/gb_oracle_database_mult_unspecified_vuln.nasl
2011-12-07 Name : Oracle Application Server Unspecified Vulnerability
File : nvt/gb_oracle_appln_server_unspecified_vuln.nasl
2011-12-07 Name : Oracle Application Server Multiple Unspecified Vulnerabilities
File : nvt/gb_oracle_appln_server_mult_unspecified_vuln.nasl
2011-08-09 Name : CentOS Update for xmlsec1 CESA-2009:1428 centos5 i386
File : nvt/gb_CESA-2009_1428_xmlsec1_centos5_i386.nasl
2011-08-09 Name : CentOS Update for xmlsec1 CESA-2009:1428 centos4 i386
File : nvt/gb_CESA-2009_1428_xmlsec1_centos4_i386.nasl
2011-08-09 Name : CentOS Update for java CESA-2009:1201 centos5 i386
File : nvt/gb_CESA-2009_1201_java_centos5_i386.nasl
2010-06-09 Name : Microsoft .NET Framework XML HMAC Truncation Vulnerability (981343)
File : nvt/secpod_ms10-041.nasl
2010-05-28 Name : Java for Mac OS X 10.5 Update 5
File : nvt/macosx_java_for_10_5_upd_5.nasl
2010-03-22 Name : SuSE Update for OpenOffice_org SUSE-SA:2010:017
File : nvt/gb_suse_2010_017.nasl
2010-03-16 Name : FreeBSD Ports: openoffice.org
File : nvt/freebsd_openoffice.org.nasl
2010-03-02 Name : Ubuntu Update for openoffice.org vulnerabilities USN-903-1
File : nvt/gb_ubuntu_USN_903_1.nasl
2009-12-30 Name : RedHat Security Advisory RHSA-2009:1694
File : nvt/RHSA_2009_1694.nasl
2009-12-10 Name : Mandriva Security Advisory MDVSA-2009:318 (xmlsec1)
File : nvt/mdksa_2009_318.nasl
2009-12-10 Name : Mandriva Security Advisory MDVSA-2009:322 (mono)
File : nvt/mdksa_2009_322.nasl
2009-11-11 Name : SLES11: Security update for IBM Java 1.6.0
File : nvt/sles11_java-1_6_0-ibm1.nasl
2009-10-19 Name : Mandrake Security Advisory MDVSA-2009:267 (xmlsec1)
File : nvt/mdksa_2009_267.nasl
2009-10-19 Name : Mandrake Security Advisory MDVSA-2009:268 (mono)
File : nvt/mdksa_2009_268.nasl
2009-10-19 Name : Mandrake Security Advisory MDVSA-2009:269 (mono)
File : nvt/mdksa_2009_269.nasl
2009-09-15 Name : CentOS Security Advisory CESA-2009:1428 (xmlsec1)
File : nvt/ovcesa2009_1428.nasl
2009-09-09 Name : RedHat Security Advisory RHSA-2009:1428
File : nvt/RHSA_2009_1428.nasl

Information Assurance Vulnerability Management (IAVM)

id Description
2010-B-0046 Microsoft .NET Framework Data Tampering Vulnerability
Severity: Category II - VMSKEY: V0024367

Snort® IPS/IDS

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
Date Description
2014-01-10 DBMS_EXPORT_EXTENSION.GET_V2_DOMAIN_INDEX_TABLES access attempt
RuleID : 7421 - Type : SERVER-ORACLE - Revision : 4
2019-09-10 Oracle 9i Application Server OWA_UTIL information disclosure attempt
RuleID : 50926 - Type : SERVER-WEBAPP - Revision : 1
2019-09-10 Oracle 9i Application Server OWA_UTIL information disclosure attempt
RuleID : 50925 - Type : SERVER-WEBAPP - Revision : 1
2019-09-10 Oracle 9i Application Server OWA_UTIL information disclosure attempt
RuleID : 50924 - Type : SERVER-WEBAPP - Revision : 1
2019-09-10 Oracle 9i Application Server OWA_UTIL information disclosure attempt
RuleID : 50923 - Type : SERVER-WEBAPP - Revision : 1
2019-09-10 Oracle 9i Application Server OWA_UTIL information disclosure attempt
RuleID : 50922 - Type : SERVER-WEBAPP - Revision : 1
2019-09-10 Oracle 9i Application Server OWA_UTIL information disclosure attempt
RuleID : 50921 - Type : SERVER-WEBAPP - Revision : 1
2018-02-27 Oracle Database Server mdsys.md2.sdo_code_size buffer overflow attempt
RuleID : 45540 - Type : SERVER-ORACLE - Revision : 1
2018-02-03 Apache SSI error page cross-site scripting attempt
RuleID : 45307 - Type : SERVER-APACHE - Revision : 2
2017-07-27 Oracle Application Server 9i unauthenticated dms access attempt
RuleID : 43357 - Type : SERVER-WEBAPP - Revision : 2
2017-07-27 Oracle Application Server 9i unauthenticated dms access attempt
RuleID : 43356 - Type : SERVER-WEBAPP - Revision : 2
2017-07-27 Oracle Application Server 9i unauthenticated dms access attempt
RuleID : 43355 - Type : SERVER-WEBAPP - Revision : 2
2017-07-27 Oracle Application Server 9i unauthenticated dms access attempt
RuleID : 43354 - Type : SERVER-WEBAPP - Revision : 2
2017-07-27 Oracle Application Server 9i unauthenticated dms access attempt
RuleID : 43353 - Type : SERVER-WEBAPP - Revision : 2
2017-07-27 Oracle Application Server 9i unauthenticated dms access attempt
RuleID : 43352 - Type : SERVER-WEBAPP - Revision : 2
2017-06-23 Oracle Application Server 9i unauthenticated application deployment attempt
RuleID : 43291-community - Type : SERVER-WEBAPP - Revision : 2
2017-07-25 Oracle Application Server 9i unauthenticated application deployment attempt
RuleID : 43291 - Type : SERVER-WEBAPP - Revision : 2
2017-06-27 Oracle Database Server SYS.KUPV SQL injection attempt
RuleID : 42992 - Type : SERVER-ORACLE - Revision : 1
2017-06-27 Oracle Database Server SYS.KUPV SQL injection attempt
RuleID : 42991 - Type : SERVER-ORACLE - Revision : 1
2017-06-27 Oracle Database Server SYS.KUPV SQL injection attempt
RuleID : 42990 - Type : SERVER-ORACLE - Revision : 1
2017-06-27 Oracle Database Server SYS.KUPV SQL injection attempt
RuleID : 42989 - Type : SERVER-ORACLE - Revision : 1
2017-06-27 Oracle Database Server SYS.KUPV SQL injection attempt
RuleID : 42988 - Type : SERVER-ORACLE - Revision : 1
2017-06-27 Oracle Database Server SYS.KUPV SQL injection attempt
RuleID : 42987 - Type : SERVER-ORACLE - Revision : 1
2017-06-27 Oracle Database Server SYS.KUPV SQL injection attempt
RuleID : 42986 - Type : SERVER-ORACLE - Revision : 1
2017-06-27 Oracle Database Server SYS.KUPV SQL injection attempt
RuleID : 42985 - Type : SERVER-ORACLE - Revision : 1

Nessus® Vulnerability Scanner

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
2019-01-18 Name: The remote Fedora host is missing a security update.
File: fedora_2019-a8ffcff7ee.nasl - Type: ACT_GATHER_INFO
2019-01-02 Name: Tenable Nessus running on the remote host is affected by multiple vulnerabili...
File: nessus_tns_2018_16.nasl - Type: ACT_GATHER_INFO
2019-01-02 Name: Tenable Nessus running on the remote host is affected by multiple vulnerabili...
File: nessus_tns_2018_17.nasl - Type: ACT_GATHER_INFO
2018-12-28 Name: The remote EulerOS host is missing a security update.
File: EulerOS_SA-2018-1434.nasl - Type: ACT_GATHER_INFO
2018-12-28 Name: Node.js - JavaScript run-time environment is affected by multiple vulnerabili...
File: nodejs_2018_nov.nasl - Type: ACT_GATHER_INFO
2018-12-20 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-4355.nasl - Type: ACT_GATHER_INFO
2018-12-10 Name: The remote FreeBSD host is missing one or more security-related updates.
File: freebsd_pkg_2a86f45afc3c11e8a41400155d006b02.nasl - Type: ACT_GATHER_INFO
2018-12-01 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-4348.nasl - Type: ACT_GATHER_INFO
2018-11-23 Name: The remote Slackware host is missing a security update.
File: Slackware_SSA_2018-325-01.nasl - Type: ACT_GATHER_INFO
2018-11-23 Name: The remote Debian host is missing a security update.
File: debian_DLA-1586.nasl - Type: ACT_GATHER_INFO
2018-11-13 Name: The remote FreeBSD host is missing a security-related update.
File: freebsd_pkg_6f170cf2e6b711e8a9a8b499baebfeaf.nasl - Type: ACT_GATHER_INFO
2018-10-30 Name: The remote FreeBSD host is missing one or more security-related updates.
File: freebsd_pkg_238ae7dedba211e8b713b499baebfeaf.nasl - Type: ACT_GATHER_INFO
2014-09-01 Name: The remote Gentoo host is missing one or more security-related patches.
File: gentoo_GLSA-201408-19.nasl - Type: ACT_GATHER_INFO
2013-07-12 Name: The remote Oracle Linux host is missing one or more security updates.
File: oraclelinux_ELSA-2009-1201.nasl - Type: ACT_GATHER_INFO
2013-07-12 Name: The remote Oracle Linux host is missing one or more security updates.
File: oraclelinux_ELSA-2009-1428.nasl - Type: ACT_GATHER_INFO
2013-02-22 Name: The remote Unix host contains a runtime environment that is affected by multi...
File: sun_java_jre_263408_unix.nasl - Type: ACT_GATHER_INFO
2013-01-24 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2009-1636.nasl - Type: ACT_GATHER_INFO
2013-01-24 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2009-1637.nasl - Type: ACT_GATHER_INFO
2013-01-24 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2009-1649.nasl - Type: ACT_GATHER_INFO
2013-01-24 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2009-1650.nasl - Type: ACT_GATHER_INFO
2012-08-01 Name: The remote Scientific Linux host is missing one or more security updates.
File: sl_20090806_java_1_6_0_openjdk_on_SL5_3.nasl - Type: ACT_GATHER_INFO
2012-08-01 Name: The remote Scientific Linux host is missing one or more security updates.
File: sl_20090824_java__jdk_1_6_0__on_SL4_x.nasl - Type: ACT_GATHER_INFO
2012-08-01 Name: The remote Scientific Linux host is missing one or more security updates.
File: sl_20090908_xmlsec1_on_SL4_x.nasl - Type: ACT_GATHER_INFO
2012-06-22 Name: The remote Gentoo host is missing one or more security-related patches.
File: gentoo_GLSA-201206-13.nasl - Type: ACT_GATHER_INFO
2012-01-24 Name: The remote web server may be affected by multiple vulnerabilities.
File: oracle_application_server_pci.nasl - Type: ACT_GATHER_INFO