cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-22004,https://securityvulnerability.io/vulnerability/CVE-2023-22004,Unauthenticated HTTP Vulnerability in Oracle E-Business Suite Reports Configuration,"A significant vulnerability has been identified in the Oracle E-Business Suite, specifically within the Reports Configuration component. This issue allows unauthenticated attackers with network access via HTTP to exploit the system. Although the successful exploitation requires human interaction, it poses serious risks, as it can lead to unauthorized updates, insertions, or deletions of data within the Oracle Applications Technology framework. Organizations using supported versions between 12.2.3 and 12.2.12 are strongly advised to investigate and implement suitable security measures to mitigate potential risks.",Oracle,E-business Suite Technology Stack,4.3,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2023-07-18T21:15:00.000Z,0 CVE-2017-10066,https://securityvulnerability.io/vulnerability/CVE-2017-10066,,"Vulnerability in the Oracle Applications Technology Stack component of Oracle E-Business Suite (subcomponent: Oracle Forms). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Technology Stack. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Applications Technology Stack accessible data. CVSS 3.0 Base Score 5.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N).",Oracle,E-business Suite Technology Stack,5.3,MEDIUM,0.001550000044517219,false,,false,false,false,,,false,false,,2017-10-19T17:00:00.000Z,0 CVE-2017-10324,https://securityvulnerability.io/vulnerability/CVE-2017-10324,,"Vulnerability in the Oracle Applications Technology Stack component of Oracle E-Business Suite (subcomponent: Oracle Forms). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Technology Stack. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Applications Technology Stack accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).",Oracle,E-business Suite Technology Stack,5.3,MEDIUM,0.0013800000306218863,false,,false,false,false,,,false,false,,2017-10-19T17:00:00.000Z,0 CVE-2008-2610,https://securityvulnerability.io/vulnerability/CVE-2008-2610,,Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 12.0.4 has unknown impact and remote authenticated attack vectors.,Oracle,"Oracle Applications Technology Stack Component,E-business Suite",,,0.00482999999076128,false,,false,false,false,,,false,false,,2008-07-15T23:41:00.000Z,0