oracle / communications_instant_messaging_server
38 known vulnerabilities in oracle communications_instant_messaging_server.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2017-12617 | Act now | 100.0% | 8.1 | ● | When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC… |
| CVE-2020-1938 | Act now | 99.3% | 9.8 | ● | When using the Apache JServ Protocol (AJP), care must be taken when trusting inc… |
| CVE-2016-8735 | Act now | 90.3% | 9.8 | ● | Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7… |
| CVE-2020-13935 | High | 86.6% | 7.5 | The payload length in a WebSocket frame was not correctly validated in Apache To… | |
| CVE-2021-33037 | High | 75.4% | 5.3 | Apache Tomcat 10.0.0-M1 to 10.0.6, 9.0.0.M1 to 9.0.46 and 8.5.0 to 8.5.66 did no… | |
| CVE-2020-13934 | High | 64.1% | 7.5 | An h2c direct connection to Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M5 to 9.… | |
| CVE-2020-9484 | High | 56.6% | 7.0 | When using Apache Tomcat versions 10.0.0-M1 to 10.0.0-M4, 9.0.0.M1 to 9.0.34, 8.… | |
| CVE-2020-36179 | Medium | 21.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-9548 | Medium | 18.3% | 9.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2021-25122 | Medium | 18.1% | 7.5 | When responding to new h2c connection requests, Apache Tomcat versions 10.0.0-M1… | |
| CVE-2020-25649 | Medium | 17.8% | 7.5 | A flaw was found in FasterXML Jackson Databind, where it did not have entity exp… | |
| CVE-2020-36188 | Medium | 10.9% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36184 | Medium | 10.4% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-35491 | Medium | 9.6% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2021-25329 | Medium | 9.5% | 7.0 | The fix for CVE-2020-9484 was incomplete. When using Apache Tomcat 10.0.0-M1 to … | |
| CVE-2020-24616 | Medium | 9.4% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction betwee… | |
| CVE-2020-10673 | Medium | 8.0% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-35490 | Medium | 7.8% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-24750 | Medium | 7.3% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction betwee… | |
| CVE-2020-11113 | Medium | 6.3% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-36185 | Medium | 5.2% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36186 | Medium | 5.2% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36187 | Medium | 5.2% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36180 | Medium | 5.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36181 | Medium | 5.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36182 | Medium | 5.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36183 | Medium | 4.9% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-36189 | Medium | 4.9% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction betwee… | |
| CVE-2020-9546 | Medium | 4.6% | 9.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-14195 | Medium | 4.5% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.5 mishandles the interaction betwee… | |
| CVE-2020-14061 | Medium | 4.5% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.5 mishandles the interaction betwee… | |
| CVE-2020-11619 | Medium | 3.7% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-11112 | Medium | 3.7% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-10968 | Medium | 3.6% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-11111 | Medium | 3.6% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-10969 | Medium | 3.6% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2020-10672 | Medium | 3.1% | 8.8 | FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction betwee… | |
| CVE-2019-17569 | Low | 8.9% | 4.8 | The refactoring present in Apache Tomcat 9.0.28 to 9.0.30, 8.5.48 to 8.5.50 and … |