Unpatched Oracle products are vulnerable. Updates for these products do not yet exist. There are no known exploits for this vulnerability.

Unpatched Oracle products are vulnerable. Updates for these products do not yet exist. There are no known exploits for this vulnerability. CVE-2018-26741: Easily Exploitable Vulnerability in the Oracle WebCenter Portal. Supported versions that are affected are 11.1.1.7.0, 11.1.1.8.0, and 11.1.1.9.0. Unauthenticated attackers can exploit this vulnerability to impact Oracle WebCenter Portal. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H).

Unpatched Oracle products are vulnerable. Updates for these products do not yet exist. There are no known exploits for this vulnerability. CVE-2018-2923: Easily Exploitable Vulnerability in the Oracle WebCenter Interaction Messaging component. Supported versions that are affected are 11.1.1.7.0, 11.1.1.8.0, and 11.1.1.9.0. Unauthenticated attackers can exploit this vulnerability to impact Oracle WebCenter Interaction Messaging. CV

Oracle Database Vulnerability

: CVE-2018-2923
Unpatched Oracle products are vulnerable. Updates for these products do not yet exist. There are no known exploits for this vulnerability.
Some of the vulnerabilities in Oracle WebCenter Interaction Messaging component have been identified as potential vectors for exploitation. Affected versions are 11.1.1.7.0, 11.1.1.8.0, and 11.1.1.9.0, which can be exploited by unauthenticated attackers to impact Oracle WebCenter Interaction Messaging component and impact Oracle Database Vulnerability: CVE-2018-2923 (CVSS:3/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)

Oracle Database Management Systems

CVE-2018-2923: Easily Exploitable Vulnerability in the Oracle WebCenter Interaction Messaging component. Supported versions that are affected are 11.1.1.7.0, 11.1.1.8.0, and 11.1.1.9.0. Unauthenticated attackers can exploit this vulnerability to impact Oracle WebCenter Interaction Messaging. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H).

Unpatched Oracle products are vulnerable and updates for these products do not yet exist; there are no known exploits for this vulnerability at this time

Oracle WebCenter Content Engine

CVE-2022-21593: Easily Exploitable Vulnerability in Oracle WebCenter Content Engine. Supported versions that are affected are 11.1.1.7.0, 11.1.1.8.0, and 11.1.1.9.0 without any known exploits or CVSS scores assigned yet. Unauthenticated attackers can exploit this vulnerability to impact Oracle WebCenter Content Engine by injecting malicious code into a web application that is using the vulnerable content engine process (a Java application).

Unpatched Oracle products are vulnerable. Updates for these products do not yet exist. There are no known exploits for this vulnerability

Timeline

Published on: 10/18/2022 21:15:00 UTC
Last modified on: 10/18/2022 21:18:00 UTC

References