Known Vulnerabilities for Rest Data Services by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Rest Data Services" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-41183 | jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of various `*Text` opti... | 6.1 - MEDIUM | 2021-10-26 | 2023-08-31 |
| CVE-2021-41182 | jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of the `altField` optio... | 6.1 - MEDIUM | 2021-10-26 | 2023-08-31 |
| CVE-2021-34429 | For Eclipse Jetty versions 9.4.37-9.4.42, 10.0.1-10.0.5 & 11.0.1-11.0.5, URIs can be crafted using some encoded characters to... | 5.3 - MEDIUM | 2021-07-15 | 2023-11-07 |
| CVE-2021-34428 | For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, if an exception is thrown from the SessionListener#sessionDestroy... | 3.5 - LOW | 2021-06-22 | 2023-11-07 |
| CVE-2021-32014 | SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (CPU consumption) via a crafted .xlsx do... | 5.5 - MEDIUM | 2021-07-19 | 2022-02-28 |
| CVE-2021-32013 | SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (memory consumption) via a crafted .xlsx... | 5.5 - MEDIUM | 2021-07-19 | 2022-02-28 |
| CVE-2021-32012 | SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (memory consumption) via a crafted .xlsx... | 5.5 - MEDIUM | 2021-07-19 | 2022-02-28 |
| CVE-2021-29425 | In Apache Commons IO before 2.7, When invoking the method FileNameUtils.normalize with an improper input string, like "//../f... | 4.8 - MEDIUM | 2021-04-13 | 2023-11-07 |
| CVE-2021-28169 | For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, it is possible for requests to the ConcatServlet with a doubly en... | 5.3 - MEDIUM | 2021-06-09 | 2023-11-07 |
| CVE-2021-28165 | In Eclipse Jetty 7.2.2 to 9.4.38, 10.0.0.alpha0 to 10.0.1, and 11.0.0.alpha0 to 11.0.1, CPU usage can reach 100% upon receivi... | 7.5 - HIGH | 2021-04-01 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Rest Data Services | 20.2.1 | All | All | All |
| Application | Oracle | Rest Data Services | 19c | All | All | All |
| Application | Oracle | Rest Data Services | 18c | All | All | All |
| Application | Oracle | Rest Data Services | 12.2.0.1 | All | All | All |
| Application | Oracle | Rest Data Services | 12.1.0.2 | All | All | All |
| Application | Oracle | Rest Data Services | 11.2.0.4 | All | All | All |
| Application | Oracle | Rest Data Services | - | All | All | All |