← Back to Products

flexcube_investor_servicing

Vendor: oracle

9
Total CVEs
1
Critical
2
High
4
Medium
2
Low

Recent CVEs

Vulnerability in the Oracle FLEXCUBE Investor Servicing product of Oracle Financial Services Applications (component: Security Management System). Supported versions that are affected are 14.5.0.15.0...

Affected versions: 14.5.0.15.0 14.7.0.8.0 14.8.0.1.0

Published: Jan 20, 2026

8.1

CVSS

The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs. This can lead to a denial of service at...

Affected versions: 12.1.0 12.3.0 12.4.0 14.0.0 14.1.0

Published: Aug 30, 2019

7.5

CVSS

initDocumentParser in xml/XMLSchedulingDataProcessor.java in Terracotta Quartz Scheduler through 2.3.0 allows XXE attacks via a job description....

Affected versions: 12.1.0 12.3.0 12.4.0 14.1.0 14.4.0

Published: Jul 26, 2019

9.8

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.1, 12.0.3, 12....

Affected versions: 12.0.1 12.0.3 12.0.4 12.1.0 12.3.0 +3 more

Published: Jul 23, 2019

3.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.1, 12.0.3, 12....

Affected versions: 12.0.1 12.0.3 12.0.4 12.1.0 12.3.0 +3 more

Published: Jul 23, 2019

5.0

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.1, 12.0.3, 12....

Affected versions: 12.0.1 12.0.3 12.0.4 12.1.0 12.3.0 +3 more

Published: Jul 23, 2019

3.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.1, 12.0.3, 12....

Affected versions: 12.0.1 12.0.3 12.0.4 12.1.0 12.3.0 +3 more

Published: Jul 23, 2019

5.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.1, 12.0.3, 12....

Affected versions: 12.0.1 12.0.3 12.0.4 12.1.0 12.3.0 +3 more

Published: Jul 23, 2019

5.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.1, 12.0.3, 12....

Affected versions: 12.0.1 12.0.3 12.0.4 12.1.0 12.3.0 +3 more

Published: Jul 23, 2019

5.8

CVSS

dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents thr...

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0 14.0.0

Published: Aug 20, 2018

7.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12....

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Jul 18, 2018

5.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12....

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Jul 18, 2018

4.9

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12....

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Jul 18, 2018

3.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12....

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Jul 18, 2018

5.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12....

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Jul 18, 2018

5.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12....

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Jul 18, 2018

4.0

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12....

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Jul 18, 2018

5.0

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12....

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Jul 18, 2018

6.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12....

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Jul 18, 2018

5.8

CVSS

Unbounded memory allocation in Google Guava 11.0 through 24.x before 24.1.1 allows remote attackers to conduct denial of service attacks against servers that depend on this library and deserialize att...

Affected versions: 12.1.0 12.3.0 12.4.0 14.0.0 14.1.0

Published: Apr 26, 2018

5.9

CVSS

Vulnerability in the Oracle Banking Corporate Lending component of Oracle Financial Services Applications (subcomponent: Core module). Supported versions that are affected are 12.3.0, 12.4.0, 12.5.0 a...

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Apr 19, 2018

4.9

CVSS

Vulnerability in the Oracle Banking Corporate Lending component of Oracle Financial Services Applications (subcomponent: Core module). Supported versions that are affected are 12.3.0, 12.4.0, 12.5.0 a...

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Apr 19, 2018

5.8

CVSS

Vulnerability in the Oracle Banking Corporate Lending component of Oracle Financial Services Applications (subcomponent: Core module). Supported versions that are affected are 12.3.0, 12.4.0, 12.5.0 a...

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Apr 19, 2018

4.0

CVSS

Vulnerability in the Oracle Banking Corporate Lending component of Oracle Financial Services Applications (subcomponent: Core module). Supported versions that are affected are 12.3.0, 12.4.0, 12.5.0 a...

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0

Published: Apr 19, 2018

5.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Security Management System). Supported versions that are affected are 12.0.1,...

Affected versions: 12.0.1 12.0.2 12.0.3 12.0.4 12.1.0 +2 more

Published: Apr 24, 2017

5.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Unit Trust). Supported versions that are affected are 12.0.1, 12.0.2, 12.0.3,...

Affected versions: 12.0.1 12.0.2 12.0.3 12.0.4 12.1.0 +2 more

Published: Apr 24, 2017

4.0

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Unit Trust). Supported versions that are affected are 12.0.1, 12.0.2, 12.0.3,...

Affected versions: 12.0.1 12.0.2 12.0.3 12.0.4 12.1.0 +2 more

Published: Apr 24, 2017

3.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Unit Trust). Supported versions that are affected are 12.0.1, 12.0.2, 12.0.3,...

Affected versions: 12.0.1 12.0.2 12.0.3 12.0.4 12.1.0 +2 more

Published: Apr 24, 2017

5.5

CVSS

In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, ...

Affected versions: 12.0.4 12.1.0 12.3.0 12.4.0 14.0.0

Published: Apr 17, 2017

9.8

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 12.0.1, 12.0.2,12.0.4,12.1.0 ...

Affected versions: 12.0.1 12.0.2 12.0.4 12.1.0 12.3.0

Published: Jan 27, 2017

5.8

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Unit Trust). Supported versions that are affected are 12.0.1, 12.0.2,12.0.4,1...

Affected versions: 12.0.1 12.0.2 12.0.4 12.1.0 12.3.0

Published: Jan 27, 2017

3.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 12.0.1, 12.0.2,12.0.4,12.1.0 ...

Affected versions: 12.0.1 12.0.2 12.0.4 12.1.0 12.3.0

Published: Jan 27, 2017

4.9

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure Code). Supported versions that are affected are 12.0.1, 12.0.2...

Affected versions: 12.0.1 12.0.2 12.0.4 12.1.0 12.3.0

Published: Jan 27, 2017

5.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 12.0.1, 12.0.2,12.0.4,12.1.0 ...

Affected versions: 12.0.1 12.0.2 12.0.4 12.1.0 12.3.0

Published: Jan 27, 2017

4.0

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 12.0.1, 12.0.2,12.0.4,12.1.0 ...

Affected versions: 12.0.1 12.0.2 12.0.4 12.1.0 12.3.0

Published: Jan 27, 2017

5.5

CVSS

Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 12.0.1, 12.0.2,12.0.4,12.1.0 ...

Affected versions: 12.0.1 12.0.2 12.0.4 12.1.0 12.3.0

Published: Jan 27, 2017

3.5

CVSS