Known Vulnerabilities for Communications Diameter Signaling Router by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Communications Diameter Signaling Router" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-42340 | The fix for bug 63362 present in Apache Tomcat 10.1.0-M1 to 10.1.0-M5, 10.0.0-M1 to 10.0.11, 9.0.40 to 9.0.53 and 8.5.60 to 8... | 7.5 - HIGH | 2021-10-14 | 2023-11-07 |
| CVE-2021-37137 | The Snappy frame decoder function doesn't restrict the chunk length which may lead to excessive memory usage. Beside this it ... | 7.5 - HIGH | 2021-10-19 | 2023-11-07 |
| CVE-2021-37136 | The Bzip2 decompression decoder function doesn't allow setting size restrictions on the decompressed output data (which affec... | 7.5 - HIGH | 2021-10-19 | 2023-11-07 |
| CVE-2021-34429 | For Eclipse Jetty versions 9.4.37-9.4.42, 10.0.1-10.0.5 & 11.0.1-11.0.5, URIs can be crafted using some encoded characters to... | 5.3 - MEDIUM | 2021-07-15 | 2023-11-07 |
| CVE-2021-33037 | Apache Tomcat 10.0.0-M1 to 10.0.6, 9.0.0.M1 to 9.0.46 and 8.5.0 to 8.5.66 did not correctly parse the HTTP transfer-encoding ... | 5.3 - MEDIUM | 2021-07-12 | 2023-11-07 |
| CVE-2021-30640 | A vulnerability in the JNDI Realm of Apache Tomcat allows an attacker to authenticate using variations of a valid user name a... | 6.5 - MEDIUM | 2021-07-12 | 2022-10-27 |
| CVE-2021-21783 | A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted... | 9.8 - CRITICAL | 2021-03-25 | 2022-07-21 |
| CVE-2021-21703 | In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with m... | 7 - HIGH | 2021-10-25 | 2023-11-07 |
| CVE-2021-21702 | In PHP versions 7.3.x below 7.3.27, 7.4.x below 7.4.15 and 8.0.x below 8.0.2, when using SOAP extension to connect to a SOAP ... | 7.5 - HIGH | 2021-02-15 | 2021-12-10 |
| CVE-2020-1941 | In Apache ActiveMQ 5.0.0 to 5.15.11, the webconsole admin GUI is open to XSS, in the view that lists the contents of a queue. | 6.1 - MEDIUM | 2020-05-14 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Communications Diameter Signaling Router | 8.4.0.5 | All | All | All |
| Application | Oracle | Communications Diameter Signaling Router | 8.3 | All | All | All |
| Application | Oracle | Communications Diameter Signaling Router | 8.2.2 | All | All | All |
| Application | Oracle | Communications Diameter Signaling Router | 8.2 | All | All | All |
| Application | Oracle | Communications Diameter Signaling Router | 8.1 | All | All | All |
| Application | Oracle | Communications Diameter Signaling Router | 8.0.0.0 | All | All | All |
| Application | Oracle | Communications Diameter Signaling Router | 8.0.0 | All | All | All |
| Application | Oracle | Communications Diameter Signaling Router | 6.0 | All | All | All |
| Application | Oracle | Communications Diameter Signaling Router | - | All | All | All |