Known Vulnerabilities for Jd Edwards World Security by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Jd Edwards World Security" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-23841 | The OpenSSL public API function X509_issuer_and_serial_hash() attempts to create a unique hash value based on the issuer and ... | 5.9 - MEDIUM | 2021-02-16 | 2023-11-07 |
| CVE-2021-23840 | Calls to EVP_CipherUpdate, EVP_EncryptUpdate and EVP_DecryptUpdate may overflow the output length argument in some cases wher... | 7.5 - HIGH | 2021-02-16 | 2023-11-07 |
| CVE-2021-23839 | OpenSSL 1.0.2 supports SSLv2. If a client attempts to negotiate SSLv2 with a server that is configured to support both SSLv2 ... | 3.7 - LOW | 2021-02-16 | 2023-11-07 |
| CVE-2021-3712 | ASN.1 strings are represented internally within OpenSSL as an ASN1_STRING structure which contains a buffer holding the strin... | 7.4 - HIGH | 2021-08-24 | 2023-11-07 |
| CVE-2021-3711 | In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an a... | 9.8 - CRITICAL | 2021-08-24 | 2023-11-07 |
| CVE-2021-3450 | The X509_V_FLAG_X509_STRICT flag enables additional security checks of the certificates present in a certificate chain. It is... | 7.4 - HIGH | 2021-03-25 | 2023-11-07 |
| CVE-2021-3449 | An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 r... | 5.9 - MEDIUM | 2021-03-25 | 2023-11-07 |
| CVE-2020-1971 | The X.509 GeneralName type is a generic type for representing different types of names. One of those name types is known as E... | 5.9 - MEDIUM | 2020-12-08 | 2023-11-07 |
| CVE-2020-1968 | The Raccoon attack exploits a flaw in the TLS specification which can lead to an attacker being able to compute the pre-maste... | 3.7 - LOW | 2020-09-09 | 2022-11-21 |
| CVE-2020-1967 | Server or client applications that call the SSL_check_chain() function during or after a TLS 1.3 handshake may crash due to a... | 7.5 - HIGH | 2020-04-21 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Jd Edwards World Security | a9.4 | All | All | All |
| Application | Oracle | Jd Edwards World Security | a9.3 | All | All | All |
| Application | Oracle | Jd Edwards World Security | a9.2 | All | All | All |
| Application | Oracle | Jd Edwards World Security | a9.1 | All | All | All |