Known Vulnerabilities for Banking Trade Finance Process Management by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Banking Trade Finance Process Management" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-22963 | In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possibl... | 9.8 - CRITICAL | 2022-04-01 | 2023-07-13 |
| CVE-2022-21474 | Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infrastructur... | 5.9 - MEDIUM | 2022-04-19 | 2022-05-02 |
| CVE-2021-41973 | In Apache MINA, a specifically crafted, malformed HTTP request may cause the HTTP Header decoder to loop indefinitely. The de... | 6.5 - MEDIUM | 2021-11-01 | 2022-05-02 |
| CVE-2021-29505 | XStream is software for serializing Java objects to XML and back again. A vulnerability in XStream versions prior to 1.4.17 m... | 8.8 - HIGH | 2021-05-28 | 2023-11-07 |
| CVE-2021-27906 | A carefully crafted PDF file can trigger an OutOfMemory-Exception while loading the file. This issue affects Apache PDFBox ve... | 5.5 - MEDIUM | 2021-03-19 | 2023-11-07 |
| CVE-2021-27807 | A carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects Apache PDFBox version 2.... | 5.5 - MEDIUM | 2021-03-19 | 2023-11-07 |
| CVE-2021-23337 | Lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function. | 7.2 - HIGH | 2021-02-15 | 2022-09-13 |
| CVE-2021-21409 | Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable high p... | 5.9 - MEDIUM | 2021-03-30 | 2023-11-07 |
| CVE-2021-21290 | Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable high p... | 5.5 - MEDIUM | 2021-02-08 | 2023-11-07 |
| CVE-2020-8203 | Prototype pollution attack when using _.zipObjectDeep in lodash before 4.17.20. | 7.4 - HIGH | 2020-07-15 | 2024-01-21 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Banking Trade Finance Process Management | 14.4.0 | All | All | All |
| Application | Oracle | Banking Trade Finance Process Management | 14.3.0 | All | All | All |
| Application | Oracle | Banking Trade Finance Process Management | 14.1.0 | All | All | All |