← Back to Products

configurator

Vendor: oracle

0
Total CVEs
0
Critical
0
High
0
Medium
0
Low

Recent CVEs

Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allo...

Affected versions: 12.2.14 12.2.3

Published: Jan 20, 2026

5.3

CVSS

Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: Core). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows unauthe...

Affected versions: 12.2.14 12.2.3

Published: Apr 15, 2025

7.5

CVSS

Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: Orders). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows unaut...

Affected versions: 12.2.14 12.2.3

Published: Apr 15, 2025

6.1

CVSS

Vulnerability in the Oracle Configurator component of Oracle Supply Chain Products Suite (subcomponent: Active Model Generation). Supported versions that are affected are 12.1 and 12.2. Easily exploit...

Affected versions: 12.1 12.2

Published: Apr 23, 2019

5.0

CVSS

Unspecified vulnerability in the Oracle Configurator component in Oracle Supply Chain Products Suite 12.0.6, 12.1, and 12.2 allows remote attackers to affect confidentiality and integrity via vectors ...

Affected versions: 12.1 12.2

Published: Apr 21, 2016

6.4

CVSS

Unspecified vulnerability in the Oracle Configurator component in Oracle Supply Chain Products Suite 11.5.10.2, 12.1, and 12.2 allows remote attackers to affect confidentiality via unknown vectors rel...

Affected versions: 11.5.10.2 12.1 12.2

Published: Jan 21, 2016

5.0

CVSS

Unspecified vulnerability in the Oracle Configurator component in Oracle Supply Chain Products Suite 11.5.10.2, 12.1, and 12.2 allows remote attackers to affect confidentiality via unknown vectors rel...

Affected versions: 11.5.10.2 12.1 12.2

Published: Jan 21, 2016

5.0

CVSS

Multiple cross-site scripting (XSS) vulnerabilities in Oracle Configurator before 11.5.7.17.32 and 11.5.6.16.53 allows remote attackers to inject arbitrary web script or HTML via (1) Text Features in ...

Affected versions: 11i

Published: Apr 1, 2002

6.8

CVSS

Oracle Configurator before 11.5.7.17.32 and 11.5.6.16.53 allows remote attackers to obtain sensitive information via a request to the oracle.apps.cz.servlet.UiServlet servlet with the test parameter s...

Affected versions: 11i

Published: Apr 1, 2002

7.5

CVSS