Oracle Retail Order Management System Cloud Service 19.5

CPE Details

Oracle Retail Order Management System Cloud Service 19.5
19.5
2021-12-02
17h12 +00:00
2021-12-03
18h39 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:oracle:retail_order_management_system_cloud_service:19.5:*:*:*:*:*:*:*

Informations

Vendor

oracle

Product

retail_order_management_system_cloud_service

Version

19.5

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-11987 2021-02-23 23h00 +00:00 Apache Batik 1.13 is vulnerable to server-side request forgery, caused by improper input validation by the NodePickerPanel. By using a specially-crafted argument, an attacker could exploit this vulnerability to cause the underlying server to make arbitrary GET requests.
8.2
High
CVE-2019-17566 2020-11-11 23h00 +00:00 Apache Batik is vulnerable to server-side request forgery, caused by improper input validation by the "xlink:href" attributes. By using a specially-crafted argument, an attacker could exploit this vulnerability to cause the underlying server to make arbitrary GET requests.
7.5
High