Known Vulnerabilities for Endeca Information Discovery Integrator by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Endeca Information Discovery Integrator" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-10683 json | dom4j before 2.0.3 and 2.1.x before 2.1.3 allows external DTDs and External Entities by default, which might enable XXE attac... | 9.8 - CRITICAL | 2020-05-01 | 2023-11-07 |
| CVE-2020-5421 json | In Spring Framework versions 5.2.0 - 5.2.8, 5.1.0 - 5.1.17, 5.0.0 - 5.0.18, 4.3.0 - 4.3.28, and older unsupported versions, t... | 6.5 - MEDIUM | 2020-09-19 | 2023-11-07 |
| CVE-2019-10247 json | In Eclipse Jetty version 7.x, 8.x, 9.2.27 and older, 9.3.26 and older, and 9.4.16 and older, the server running on any OS and... | 5.3 - MEDIUM | 2019-04-22 | 2023-11-07 |
| CVE-2019-10246 json | In Eclipse Jetty version 9.2.27, 9.3.26, and 9.4.16, the server running on Windows is vulnerable to exposure of the fully qua... | 5.3 - MEDIUM | 2019-04-22 | 2023-11-07 |
| CVE-2018-15756 json | Spring Framework, version 5.1, versions 5.0.x prior to 5.0.10, versions 4.3.x prior to 4.3.20, and older unsupported versions... | 7.5 - HIGH | 2018-10-18 | 2023-11-07 |
| CVE-2018-11040 json | Spring Framework, versions 5.0.x prior to 5.0.7 and 4.3.x prior to 4.3.18 and older unsupported versions, allows web applicat... | 7.5 - HIGH | 2018-06-25 | 2022-06-23 |
| CVE-2018-11039 json | Spring Framework (versions 5.0.x prior to 5.0.7, versions 4.3.x prior to 4.3.18, and older unsupported versions) allow web ap... | 5.9 - MEDIUM | 2018-06-25 | 2022-06-23 |
| CVE-2018-3215 json | Vulnerability in the Oracle Endeca Information Discovery Integrator component of Oracle Fusion Middleware (subcomponent: Inte... | 5.4 - MEDIUM | 2018-10-17 | 2019-10-03 |
| CVE-2018-1258 json | Spring Framework version 5.0.5 when used in combination with any versions of Spring Security contains an authorization bypass... | 8.8 - HIGH | 2018-05-11 | 2022-04-11 |
| CVE-2018-1257 json | Spring Framework, versions 5.0.x prior to 5.0.6, versions 4.3.x prior to 4.3.17, and older unsupported versions allows applic... | 6.5 - MEDIUM | 2018-05-11 | 2022-06-23 |