cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-21188,https://securityvulnerability.io/vulnerability/CVE-2024-21188,Vulnerability in Oracle Financial Services Revenue Management and Billing Could Lead to Data Access,"Vulnerability in the Oracle Financial Services Revenue Management and Billing product of Oracle Financial Services Applications (component: Chatbot). Supported versions that are affected are 6.0.0.0.0 and 6.1.0.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Financial Services Revenue Management and Billing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Financial Services Revenue Management and Billing, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Financial Services Revenue Management and Billing accessible data as well as unauthorized read access to a subset of Oracle Financial Services Revenue Management and Billing accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).",Oracle,Financial Services Revenue Management And Billing,6.1,MEDIUM,0.0004600000102072954,false,,false,false,false,,,false,false,,2024-07-16T23:15:00.000Z,0 CVE-2022-21580,https://securityvulnerability.io/vulnerability/CVE-2022-21580,Vulnerability in Oracle Financial Services Revenue Management and Billing Product by Oracle,"A vulnerability exists in the Oracle Financial Services Revenue Management and Billing product that allows a low-privileged attacker with network access via HTTP to compromise critical features of the system. Although this vulnerability is challenging to exploit, it requires human interaction from an individual other than the attacker. The consequences of successful exploitation may include unauthorized access to sensitive data, as well as the ability to modify or delete data within the application. Additionally, it may allow the attacker to partially disrupt service, leading to business impact for organizations using Oracle Financial Services Revenue Management and Billing.",Oracle,Financial Services Revenue Management And Billing,5.9,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2022-07-19T21:08:37.000Z,0 CVE-2021-2113,https://securityvulnerability.io/vulnerability/CVE-2021-2113,Oracle Financial Services Revenue Management and Billing Vulnerability,"A security flaw in Oracle Financial Services Revenue Management and Billing allows low privileged attackers with network access via HTTP to manipulate accessible data. If exploited, this vulnerability enables unauthorized update, insertion, or deletion of sensitive information, posing a significant risk to data integrity.",Oracle,Financial Services Revenue Management And Billing,4.3,MEDIUM,0.0005699999746866524,false,,false,false,false,,,false,false,,2021-01-20T14:50:12.000Z,0 CVE-2020-2730,https://securityvulnerability.io/vulnerability/CVE-2020-2730,File Upload Vulnerability in Oracle Financial Services Applications,"A vulnerability exists in the Oracle Financial Services Revenue Management and Billing product that allows low-privileged attackers with network access via HTTP to compromise the system. This file upload vulnerability requires human interaction from an individual other than the attacker for exploitation. Although it primarily affects the Revenue Management and Billing component, successful attacks can lead to unauthorized updates, deletions, or insertions of accessible data. Additionally, the vulnerability may grant unauthorized read access to certain data subsets, which could affect other linked Oracle applications.",Oracle,Financial Services Revenue Management And Billing,5.4,MEDIUM,0.000539999979082495,false,,false,false,false,,,false,false,,2020-01-15T16:34:09.000Z,0