← Back

Jd Edwards Enterpriseone Tools

jd_edwards_enterpriseone_tools

Vendor: Oracle • 173 CVEs

CVEs (173)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Openssl
Oracle
7Agile Engineering Data Management
Communications Application Session ControllerCommunications Eagle Lnp Application Processor+4 more
May 13, 2026
May 4, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In OpenSSL 1.1.0 before 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL pointer leading to a client crash. This co...Show more
In OpenSSL 1.1.0 before 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL pointer leading to a client crash. This could be exploited in a Denial of Service attack.Show less
1Oracle
1Jd Edwards Enterpriseone Tools
May 13, 2026
Apr 24, 2017
N/A· v4
6.5 MEDIUM· v3
6.4 MEDIUM· v2
Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Web Runtime SEC). The supported version that is affected is 9.2. Easily "exploitable" vulnerability allows unauth...Show more
Vulnerability in the JD Edwards EnterpriseOne Tools component of Oracle JD Edwards Products (subcomponent: Web Runtime SEC). The supported version that is affected is 9.2. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via HTTP to compromise JD Edwards EnterpriseOne Tools. Successful attacks of this vulnerability can result in unauthorized read access to a subset of JD Edwards EnterpriseOne Tools accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of JD Edwards EnterpriseOne Tools. CVSS 3.0 Base Score 6.5 (Confidentiality and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L).Show less
4Apache
NetappOracle+1 more
79Api Gateway
Application Testing SuiteAutovue Vuelink Integration+76 more
May 13, 2026
Apr 17, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, when deserialized, c...Show more
In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, when deserialized, can execute arbitrary code.Show less
2Openssl
Oracle
4Jd Edwards Enterpriseone Tools
OpensslOpus 10g Ethernet Switch Family+1 more
May 6, 2026
Jul 9, 2015
N/A· v4
6.5 MEDIUM· v3
6.4 MEDIUM· v2
The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, w...Show more
The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.Show less
1Oracle
1Jd Edwards Enterpriseone Tools
May 6, 2026
Jan 21, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1.5 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Portal S...Show more
Unspecified vulnerability in the JD Edwards EnterpriseOne Tools component in Oracle JD Edwards Products 9.1.5 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Portal SEC.Show less
1Oracle
2Jd Edwards Enterpriseone Tools
Jd Edwards Products
Apr 29, 2026
Jan 18, 2012
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different v...Show more
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2325, CVE-2011-2326, and CVE-2011-3509.Show less
1Oracle
2Jd Edwards Enterpriseone Tools
Jd Edwards Products
Apr 29, 2026
Jan 18, 2012
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect integrity, related to Enterprise Infrastructure SEC (JDENET).
1Oracle
2Jd Edwards Enterpriseone Tools
Jd Edwards Products
Apr 29, 2026
Jan 18, 2012
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different v...Show more
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2325, CVE-2011-2326, and CVE-2011-3524.Show less
1Oracle
2Jd Edwards Enterpriseone Tools
Jd Edwards Products
Apr 29, 2026
Jan 18, 2012
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different v...Show more
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2325, CVE-2011-3509, and CVE-2011-3524.Show less
1Oracle
2Jd Edwards Enterpriseone Tools
Jd Edwards Products
Apr 29, 2026
Jan 18, 2012
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different v...Show more
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDENET), a different vulnerability than CVE-2011-2326, CVE-2011-3509, and CVE-2011-3524.Show less
1Oracle
2Jd Edwards Enterpriseone Tools
Jd Edwards Products
Apr 29, 2026
Jan 18, 2012
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote attackers to affect availability, related to Enterprise Infrastructure SEC (JDENET).
1Oracle
2Jd Edwards Enterpriseone Tools
Jd Edwards Products
Apr 29, 2026
Jan 18, 2012
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect confidentiality, related to Enterprise Infrastructure SEC (JDNET).
1Oracle
2Jd Edwards Enterpriseone Tools
Jd Edwards Products
Apr 29, 2026
Jan 18, 2012
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Unspecified vulnerability in the EnterpriseOne Tools component in Oracle JD Edwards 8.98 SP 24 allows remote authenticated users to affect integrity, related to Enterprise Infrastucture SEC (JDNET).