E Business Suite Technology Stack
Vendor:
First CVE: Oct 19, 2017 · Active for 8 years
5
Total CVEs
More Total CVEs than 79% of tracked products
1.3
Avg CVEs / Year
Higher CVE frequency than 58% of tracked products
5.2
Avg CVSS
Higher Avg CVSS than 12% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact E Business Suite Technology Stack over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 19, 2017
8 years ago
Most Recent CVE
Apr 16, 2024
833 days ago
CVE Severity & Scoring
E Business Suite Technology Stack5 CVEs
100%
All CVEs353,240 CVEs
45%
40%
11%
Medium
Attack Vector
Local0 (0.0%)
Network5 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (80.0%)
High1 (20.0%)
Unknown0 (0.0%)
User Interaction
None4 (80.0%)
Unknown0 (0.0%)
Required1 (20.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None5 (100.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-0734MEDIUM The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the privat | Oct 30, 2018 | 5.9 | 26 | NO | NO |
CVE-2024-20990MEDIUM Vulnerability in the Oracle Applications Technology product of Oracle E-Business Suite (component: Templates). Supported versions that are affected are 12.2.3-12.2.13. Easily expl | Apr 16, 2024 | 5.3 | 16 | NO | NO |
CVE-2017-10324MEDIUM Vulnerability in the Oracle Applications Technology Stack component of Oracle E-Business Suite (subcomponent: Oracle Forms). Supported versions that are affected are 12.1.3, 12.2.3 | Oct 19, 2017 | 5.3 | 16 | NO | NO |
CVE-2017-10066MEDIUM Vulnerability in the Oracle Applications Technology Stack component of Oracle E-Business Suite (subcomponent: Oracle Forms). Supported versions that are affected are 12.1.3, 12.2.3 | Oct 19, 2017 | 5.3 | 16 | NO | NO |
CVE-2023-22004MEDIUM Vulnerability in the Oracle Applications Technology product of Oracle E-Business Suite (component: Reports Configuration). Supported versions that are affected are 12.2.3-12.2.12. | Jul 18, 2023 | 4.3 | 15 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (5 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (5 CVEs).
Media Mentions
Signals from CVEs in this product scope (5 CVEs).
Top CNAs Publishing CVEs For E Business Suite Technology Stack
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 12.2.7 | 2 | 5.3 | 1.9% | 0 | 0 |
| 12.2.6 | 2 | 5.3 | 1.9% | 0 | 0 |
| 12.2.5 | 2 | 5.3 | 1.9% | 0 | 0 |
| 12.2.4 | 2 | 5.3 | 1.9% | 0 | 0 |
| 12.2.3 | 2 | 5.3 | 1.9% | 0 | 0 |
| 12.1.3 | 2 | 5.3 | 1.9% | 0 | 0 |
| 1.0.1 | 1 | 5.9 | 12.2% | 0 | 0 |
| 1.0.0 | 1 | 5.9 | 12.2% | 0 | 0 |
| 0.9.8 | 1 | 5.9 | 12.2% | 0 | 0 |