Flexcube Private Banking
Vendor:
First CVE: Sep 30, 2013 · Active for 12 years
75
Total CVEs
More Total CVEs than 99% of tracked products
9.4
Avg CVEs / Year
Higher CVE frequency than 96% of tracked products
6.5
Avg CVSS
Higher Avg CVSS than 36% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Flexcube Private Banking over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 30, 2013
12 years ago
Most Recent CVE
Feb 1, 2022
1,638 days ago
CVE Severity & Scoring
Flexcube Private Banking75 CVEs
57%
31%
11%
All CVEs353,240 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local7 (9.3%)
Network66 (88.0%)
Unknown1 (1.3%)
Physical0 (0.0%)
Adjacent Network1 (1.3%)
Attack Complexity
Low59 (78.7%)
High15 (20.0%)
Unknown1 (1.3%)
User Interaction
None56 (74.7%)
Unknown1 (1.3%)
Required18 (24.0%)
Privileges Required
Low28 (37.3%)
High1 (1.3%)
None45 (60.0%)
Unknown1 (1.3%)
Top CVEs
Signals from CVEs in this product scope (75 CVEs).
75 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-0227HIGH A Server Side Request Forgery (SSRF) vulnerability affected the Apache Axis 1.4 distribution that was last released in 2006. Security and bug commits commits continue in the projec | May 1, 2019 | 7.5 | 84 | NO | YES |
CVE-2021-44832MEDIUM Apache Log4j2 versions 2.0-beta7 through 2.17.0 (excluding security fix releases 2.3.2 and 2.12.4) are vulnerable to a remote code execution (RCE) attack when a configuration uses | Dec 28, 2021 | 6.6 | 77 | NO | NO |
CVE-2020-5398HIGH In Spring Framework, versions 5.2.x prior to 5.2.3, versions 5.1.x prior to 5.1.13, and versions 5.0.x prior to 5.0.16, an application is vulnerable to a reflected file download (R | Jan 17, 2020 | 7.5 | 73 | NO | NO |
CVE-2020-11998CRITICAL A regression has been introduced in the commit preventing JMX re-bind. By passing an empty environment map to RMIConnectorServer, instead of the map that contains the authenticatio | Sep 10, 2020 | 9.8 | 51 | NO | NO |
CVE-2019-10086HIGH In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property | Aug 20, 2019 | 7.3 | 40 | NO | NO |
CVE-2019-13990CRITICAL initDocumentParser in xml/XMLSchedulingDataProcessor.java in Terracotta Quartz Scheduler through 2.3.0 allows XXE attacks via a job description. | Jul 26, 2019 | 9.8 | 40 | NO | NO |
CVE-2019-12419CRITICAL Apache CXF before 3.3.4 and 3.2.11 provides all of the components that are required to build a fully fledged OpenId Connect service. There is a vulnerability in the access token se | Nov 6, 2019 | 9.8 | 37 | NO | NO |
CVE-2019-2904CRITICAL Vulnerability in the Oracle JDeveloper and ADF product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 11.1.1.9.0, 12.1.3.0.0 and 12.2. | Oct 16, 2019 | 9.8 | 36 | NO | NO |
CVE-2019-12402HIGH The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs. This can lead to a | Aug 30, 2019 | 7.5 | 33 | NO | NO |
CVE-2020-11971HIGH Apache Camel's JMX is vulnerable to Rebind Flaw. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.x, 3.0.0 up to 3.1.0 is affected. Users should upgrade to 3.2.0. | May 14, 2020 | 7.5 | 32 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (75 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
1.3% of CVEs· 85th percentile
Social Chatter
Signals from CVEs in this product scope (75 CVEs).
Media Mentions
Signals from CVEs in this product scope (75 CVEs).
Top CNAs Publishing CVEs For Flexcube Private Banking
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 3.0 | 1 | 10.0 | 8.3% | 0 | 0 |
| 2.2.0.1 | 9 | 6.8 | 3.3% | 0 | 0 |
| 2.2.0 | 19 | 5.5 | 1.3% | 0 | 0 |
| 2.0.1 | 25 | 5.8 | 1.7% | 0 | 0 |
| 2.0.0.0 | 3 | 7.1 | 4.5% | 0 | 0 |
| 2.0.0 | 16 | 5.5 | 1.4% | 0 | 0 |
| 2.0 | 1 | 10.0 | 8.3% | 0 | 0 |
| 1.7 | 1 | 10.0 | 8.3% | 0 | 0 |
| 12.1.0.0 | 3 | 7.1 | 4.5% | 0 | 0 |
| 12.1.0 | 46 | 7.0 | 13.7% | 0 | 1 |
| 12.0.3.0 | 3 | 7.1 | 4.5% | 0 | 0 |
| 12.0.3 | 2 | 5.8 | 5.3% | 0 | 0 |
| 12.0.2 | 2 | 7.1 | 4.7% | 0 | 0 |
| 12.0.1.0 | 3 | 7.1 | 4.5% | 0 | 0 |
| 12.0.1 | 27 | 5.8 | 1.9% | 0 | 0 |
| 12.0.0 | 42 | 7.0 | 12.1% | 0 | 1 |