cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2021-2237,https://securityvulnerability.io/vulnerability/CVE-2021-2237,Vulnerability in Oracle General Ledger of Oracle E-Business Suite,"A security weakness in Oracle General Ledger's Account Hierarchy Manager component allows a low-privileged attacker with network access via HTTP to compromise the application. This vulnerability can lead to unauthorized creation, deletion, or modification of critical data. As a result, attackers may gain complete access to sensitive data within Oracle General Ledger, resulting in severe breaches of data confidentiality and integrity.",Oracle,General Ledger,8.1,HIGH,0.0009399999980814755,false,,false,false,false,,,false,false,,2021-04-22T21:53:54.000Z,0 CVE-2020-2750,https://securityvulnerability.io/vulnerability/CVE-2020-2750,Unauthenticated Access Vulnerability in Oracle E-Business Suite General Ledger,"An unauthenticated access vulnerability exists in Oracle's General Ledger component of the Oracle E-Business Suite. This security flaw affects multiple versions and can be exploited by attackers with HTTP network access, allowing them to gain unauthorized access to sensitive data. Successful exploitation could lead to the unauthorized retrieval of critical information, posing significant risks to the integrity and confidentiality of financial data managed within the Oracle General Ledger system.",Oracle,General Ledger,7.5,HIGH,0.0019399999873712659,false,,false,false,false,,,false,false,,2020-04-15T13:29:44.000Z,0 CVE-2019-2638,https://securityvulnerability.io/vulnerability/CVE-2019-2638,Exploit in Oracle E-Business Suite General Ledger Allows Unauthorized Access,"A vulnerability exists in the Oracle General Ledger component of the Oracle E-Business Suite, particularly within the Consolidation Hierarchy Viewer. This flaw enables a low privileged attacker with network access via HTTP to potentially compromise the integrity of the Oracle General Ledger system. Successful exploitation can lead to unauthorized creation, deletion, or modification of critical data, granting the attacker access to sensitive information and allowing complete manipulation of all accessible data within the General Ledger.",Oracle,General Ledger,9.9,CRITICAL,0.013129999861121178,false,,false,false,false,,,false,false,,2019-04-23T18:16:42.000Z,0 CVE-2018-2865,https://securityvulnerability.io/vulnerability/CVE-2018-2865,,"Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Consolidation Hierarchy Viewer). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle General Ledger accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).",Oracle,General Ledger,5.3,MEDIUM,0.0013099999632686377,false,,false,false,false,,,false,false,,2018-04-19T02:00:00.000Z,0 CVE-2018-2873,https://securityvulnerability.io/vulnerability/CVE-2018-2873,,"Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Account Hierarchy Manager). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle General Ledger accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).",Oracle,General Ledger,5.3,MEDIUM,0.0013099999632686377,false,,false,false,false,,,false,false,,2018-04-19T02:00:00.000Z,0 CVE-2018-2866,https://securityvulnerability.io/vulnerability/CVE-2018-2866,,"Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Consolidation Hierarchy Viewer). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle General Ledger accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).",Oracle,General Ledger,5.3,MEDIUM,0.0013099999632686377,false,,false,false,false,,,false,false,,2018-04-19T02:00:00.000Z,0 CVE-2018-2872,https://securityvulnerability.io/vulnerability/CVE-2018-2872,,"Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Account Hierarchy Manager). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle General Ledger accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).",Oracle,General Ledger,5.3,MEDIUM,0.0013099999632686377,false,,false,false,false,,,false,false,,2018-04-19T02:00:00.000Z,0 CVE-2018-2656,https://securityvulnerability.io/vulnerability/CVE-2018-2656,,"Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Data Manager Server). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle General Ledger accessible data as well as unauthorized access to critical data or complete access to all Oracle General Ledger accessible data. CVSS 3.0 Base Score 9.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N).",Oracle,General Ledger,9.1,CRITICAL,0.0022499999031424522,false,,false,false,false,,,false,false,,2018-01-18T02:00:00.000Z,0 CVE-2017-10245,https://securityvulnerability.io/vulnerability/CVE-2017-10245,,"Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Account Hierarchy Manager). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle General Ledger accessible data. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).",Oracle,General Ledger,7.5,HIGH,0.001500000013038516,false,,false,false,false,,,false,false,,2017-08-08T15:00:00.000Z,0 CVE-2016-0588,https://securityvulnerability.io/vulnerability/CVE-2016-0588,,Unspecified vulnerability in the Oracle General Ledger component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to Consolidation Hierarchy Viewer.,Oracle,General Ledger,,,0.001449999981559813,false,,false,false,false,,,false,false,,2016-01-21T02:00:00.000Z,0