Known Vulnerabilities for Retail Service Backbone by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Retail Service Backbone" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-23437 json | There's a vulnerability within the Apache Xerces Java (XercesJ) XML parser when handling specially crafted XML document paylo... | 6.5 - MEDIUM | 2022-01-24 | 2023-08-08 |
| CVE-2021-45105 json | Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion fro... | 5.9 - MEDIUM | 2021-12-18 | 2022-10-06 |
| CVE-2021-40690 json | All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secur... | 7.5 - HIGH | 2021-09-19 | 2023-11-07 |
| CVE-2021-36374 json | When reading a specially crafted ZIP archive, or a derived formats, an Apache Ant build can be made to allocate large amounts... | 5.5 - MEDIUM | 2021-07-14 | 2023-11-07 |
| CVE-2021-36373 json | When reading a specially crafted TAR archive an Apache Ant build can be made to allocate large amounts of memory that finally... | 5.5 - MEDIUM | 2021-07-14 | 2023-11-07 |
| CVE-2021-29425 json | In Apache Commons IO before 2.7, When invoking the method FileNameUtils.normalize with an improper input string, like "//../f... | 4.8 - MEDIUM | 2021-04-13 | 2023-11-07 |
| CVE-2021-2351 json | Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are... | 8.3 - HIGH | 2021-07-21 | 2023-10-23 |
| CVE-2020-36189 json | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related t... | 8.1 - HIGH | 2021-01-06 | 2023-09-13 |
| CVE-2020-36188 json | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related t... | 8.1 - HIGH | 2021-01-06 | 2023-09-13 |
| CVE-2020-36187 json | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related t... | 8.1 - HIGH | 2021-01-06 | 2023-09-13 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Retail Service Backbone | 15.0 | |||
| Application | Oracle | Retail Service Backbone | 14.1 | |||
| Application | Oracle | Retail Service Backbone | 14.0 | |||
| Application | Oracle | Retail Service Backbone | 13.2 | |||
| Application | Oracle | Retail Service Backbone | 13.1 | |||
| Application | Oracle | Retail Service Backbone | 13.0 |