Known Vulnerabilities for Fusion Middleware Mapviewer by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Fusion Middleware Mapviewer" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-29425 | In Apache Commons IO before 2.7, When invoking the method FileNameUtils.normalize with an improper input string, like "//../f... | 4.8 - MEDIUM | 2021-04-13 | 2023-11-07 |
| CVE-2020-14608 | Vulnerability in the Oracle Fusion Middleware MapViewer product of Oracle Fusion Middleware (component: Tile Server). The sup... | 8.2 - HIGH | 2020-07-15 | 2020-09-17 |
| CVE-2020-14607 | Vulnerability in the Oracle Fusion Middleware MapViewer product of Oracle Fusion Middleware (component: Tile Server). Support... | 6.1 - MEDIUM | 2020-07-15 | 2020-07-16 |
| CVE-2020-11987 | Apache Batik 1.13 is vulnerable to server-side request forgery, caused by improper input validation by the NodePickerPanel. B... | 8.2 - HIGH | 2021-02-24 | 2024-02-01 |
| CVE-2019-17566 | Apache Batik is vulnerable to server-side request forgery, caused by improper input validation by the "xlink:href" attributes... | 7.5 - HIGH | 2020-11-12 | 2024-01-07 |
| CVE-2019-13990 | initDocumentParser in xml/XMLSchedulingDataProcessor.java in Terracotta Quartz Scheduler through 2.3.0 allows XXE attacks via... | 9.8 - CRITICAL | 2019-07-26 | 2023-12-22 |
| CVE-2019-11358 | jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of ... | 6.1 - MEDIUM | 2019-04-20 | 2023-11-07 |
| CVE-2019-10219 | A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consi... | 6.1 - MEDIUM | 2019-11-08 | 2023-11-07 |
| CVE-2018-8013 | In Apache Batik 1.x before 1.10, when deserializing subclass of `AbstractDocument`, the class takes a string from the inputSt... | 9.8 - CRITICAL | 2018-05-24 | 2024-01-07 |
| CVE-2018-2943 | Vulnerability in the Oracle Fusion Middleware MapViewer component of Oracle Fusion Middleware (subcomponent: Map Builder). Su... | 9.8 - CRITICAL | 2018-07-18 | 2019-10-03 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Fusion Middleware Mapviewer | 12.2.1.4.0 | All | All | All |
| Application | Oracle | Fusion Middleware Mapviewer | 12.2.1.3.0 | All | All | All |
| Application | Oracle | Fusion Middleware Mapviewer | 12.2.1.3 | All | All | All |
| Application | Oracle | Fusion Middleware Mapviewer | 12.2.1.2.0 | All | All | All |
| Application | Oracle | Fusion Middleware Mapviewer | 12.2.1.2 | All | All | All |
| Application | Oracle | Fusion Middleware Mapviewer | 12.2.1.1 | All | All | All |
| Application | Oracle | Fusion Middleware Mapviewer | 11.1.1.9 | All | All | All |