Known Vulnerabilities for Webcenter Sites by Oracle
Listed below are 10 of the newest known vulnerabilities associated with "Webcenter Sites" by "Oracle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2024-20908 json | 6.1 - MEDIUM | 2024-01-16 | 2024-01-20 | |
| CVE-2021-45105 json | Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion fro... | 5.9 - MEDIUM | 2021-12-18 | 2022-10-06 |
| CVE-2021-32808 json | ckeditor is an open source WYSIWYG HTML editor with rich content support. A vulnerability has been discovered in the clipboar... | 5.4 - MEDIUM | 2021-08-12 | 2023-11-07 |
| CVE-2021-29505 json | XStream is software for serializing Java objects to XML and back again. A vulnerability in XStream versions prior to 1.4.17 m... | 8.8 - HIGH | 2021-05-28 | 2023-11-07 |
| CVE-2021-27906 json | A carefully crafted PDF file can trigger an OutOfMemory-Exception while loading the file. This issue affects Apache PDFBox ve... | 5.5 - MEDIUM | 2021-03-19 | 2023-11-07 |
| CVE-2021-27807 json | A carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects Apache PDFBox version 2.... | 5.5 - MEDIUM | 2021-03-19 | 2023-11-07 |
| CVE-2021-26272 json | It was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim to paste crafted URL-like... | 6.5 - MEDIUM | 2021-01-26 | 2022-03-01 |
| CVE-2021-26271 json | It was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim to paste crafted text int... | 6.5 - MEDIUM | 2021-01-26 | 2021-12-01 |
| CVE-2020-14613 json | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: Advanced User Interface). Support... | 6.1 - MEDIUM | 2020-07-15 | 2020-07-16 |
| CVE-2020-11023 json | In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing | 6.1 - MEDIUM | 2020-04-29 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Webcenter Sites | 7.6.2 | |||
| Application | Oracle | Webcenter Sites | 12.2.1.4.0 | |||
| Application | Oracle | Webcenter Sites | 12.2.1.3.0 | |||
| Application | Oracle | Webcenter Sites | 12.2.1.2.0 | |||
| Application | Oracle | Webcenter Sites | 12.2.1.1.0 | |||
| Application | Oracle | Webcenter Sites | 12.2.1.0.0 | |||
| Application | Oracle | Webcenter Sites | 12.2.1.0 | |||
| Application | Oracle | Webcenter Sites | 12.2.1 | |||
| Application | Oracle | Webcenter Sites | 11.1.1.8.0 | |||
| Application | Oracle | Webcenter Sites | 11.1.1.8 |