Hyperion Essbase Administration Services
Vendor:
First CVE: Jul 21, 2021 · Active for 5 years
9
Total CVEs
More Total CVEs than 88% of tracked products
3.0
Avg CVEs / Year
Higher CVE frequency than 78% of tracked products
7.9
Avg CVSS
Higher Avg CVSS than 71% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Hyperion Essbase Administration Services over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jul 21, 2021
5 years ago
Most Recent CVE
Jul 18, 2023
1,105 days ago
CVE Severity & Scoring
Hyperion Essbase Administration Services9 CVEs
22%
56%
22%
All CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (11.1%)
Network8 (88.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None9 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low3 (33.3%)
High1 (11.1%)
None5 (55.6%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-35683CRITICAL Vulnerability in the Oracle Essbase Administration Services product of Oracle Essbase (component: EAS Console). The supported version that is affected is Prior to 11.1.2.4.047. Eas | Jan 19, 2022 | 9.9 | 31 | NO | NO |
CVE-2021-35652CRITICAL Vulnerability in the Essbase Administration Services product of Oracle Essbase (component: EAS Console). The supported versions that are affected are Prior to 11.1.2.4.046 and Prio | Oct 20, 2021 | 10.0 | 30 | NO | NO |
CVE-2021-35651HIGH Vulnerability in the Essbase Administration Services product of Oracle Essbase (component: EAS Console). The supported versions that are affected are Prior to 11.1.2.4.046 and Prio | Oct 20, 2021 | 8.5 | 26 | NO | NO |
CVE-2021-2349HIGH Vulnerability in the Hyperion Essbase Administration Services product of Oracle Essbase (component: EAS Console). Supported versions that are affected are 11.1.2.4 and 21.2. Easily | Jul 21, 2021 | 8.6 | 26 | NO | NO |
CVE-2021-35654HIGH Vulnerability in the Essbase Administration Services product of Oracle Essbase (component: EAS Console). The supported versions that are affected are Prior to 11.1.2.4.046 and Prio | Oct 20, 2021 | 7.5 | 25 | NO | NO |
CVE-2021-35653HIGH Vulnerability in the Essbase Administration Services product of Oracle Essbase (component: EAS Console). The supported versions that are affected are Prior to 11.1.2.4.046 and Prio | Oct 20, 2021 | 7.7 | 25 | NO | NO |
CVE-2021-2350HIGH Vulnerability in the Hyperion Essbase Administration Services product of Oracle Essbase (component: EAS Console). Supported versions that are affected are 11.1.2.4 and 21.2. Easily | Jul 21, 2021 | 7.5 | 24 | NO | NO |
CVE-2021-35655MEDIUM Vulnerability in the Essbase Administration Services product of Oracle Essbase (component: EAS Console). The supported versions that are affected are Prior to 11.1.2.4.046 and Prio | Oct 20, 2021 | 5.3 | 20 | NO | NO |
CVE-2023-21961MEDIUM Vulnerability in the Oracle Hyperion Essbase Administration Services product of Oracle Essbase (component: EAS Administration and EAS Console). The supported version that is affe | Jul 18, 2023 | 6.0 | 18 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For Hyperion Essbase Administration Services
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 21.4.3.0.0 | 1 | 6.0 | 0.2% | 0 | 0 |
| 21.2 | 2 | 8.1 | 1.7% | 0 | 0 |
| 11.1.2.4 | 2 | 8.1 | 1.7% | 0 | 0 |