CVE-2021-2351 (CNNVD-202107-1424)

HIGH
中文标题:
Oracle Database Server 授权问题漏洞
英文标题:
Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versi...
CVSS分数: 8.3
发布时间: 2021-07-20 22:43:29
漏洞类型: 授权问题
状态: PUBLISHED
数据质量分数: 0.30
数据版本: v3
漏洞描述
中文描述:

Oracle Database Server是美国甲骨文(Oracle)公司的一套关系数据库管理系统。该数据库管理系统提供数据管理、分布式处理等功能。 Oracle Database Server 存在授权问题漏洞,该漏洞源于Oracle数据库服务器的高级网络选项内不正确的输入验证。远程未经身份验证的攻击者可利用该漏洞执行任意代码。受影响的产品及版本如下:Oracle数据库服务器:12.1.0.2、12.2.0.1、19c.c。

英文描述:

Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Advanced Networking Option. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Advanced Networking Option, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Advanced Networking Option. Note: The July 2021 Critical Patch Update introduces a number of Native Network Encryption changes to deal with vulnerability CVE-2021-2351 and prevent the use of weaker ciphers. Customers should review: "Changes in Native Network Encryption with the July 2021 Critical Patch Update" (Doc ID 2791571.1). CVSS 3.1 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H).

CWE类型:
CWE-384 CWE-327
标签:
(暂无数据)
受影响产品
厂商 产品 版本 版本范围 平台 CPE
Oracle Corporation WebLogic Server 12.2.1.3.0 - - cpe:2.3:a:oracle_corporation:weblogic_server:12.2.1.3.0:*:*:*:*:*:*:*
Oracle Corporation WebLogic Server 12.2.1.4.0 - - cpe:2.3:a:oracle_corporation:weblogic_server:12.2.1.4.0:*:*:*:*:*:*:*
Oracle Corporation WebLogic Server 14.1.1.0.0 - - cpe:2.3:a:oracle_corporation:weblogic_server:14.1.1.0.0:*:*:*:*:*:*:*
oracle advanced_networking_option 12.1.0.2 - - cpe:2.3:a:oracle:advanced_networking_option:12.1.0.2:*:*:*:*:*:*:*
oracle advanced_networking_option 12.2.0.1 - - cpe:2.3:a:oracle:advanced_networking_option:12.2.0.1:*:*:*:*:*:*:*
oracle advanced_networking_option 19c - - cpe:2.3:a:oracle:advanced_networking_option:19c:*:*:*:*:*:*:*
oracle agile_engineering_data_management 6.2.1.0 - - cpe:2.3:a:oracle:agile_engineering_data_management:6.2.1.0:*:*:*:*:*:*:*
oracle agile_plm 9.3.6 - - cpe:2.3:a:oracle:agile_plm:9.3.6:*:*:*:*:*:*:*
oracle agile_product_lifecycle_management_for_process 6.2.2.0 - - cpe:2.3:a:oracle:agile_product_lifecycle_management_for_process:6.2.2.0:*:*:*:*:*:*:*
oracle agile_product_lifecycle_management_for_process 6.2.3.0 - - cpe:2.3:a:oracle:agile_product_lifecycle_management_for_process:6.2.3.0:*:*:*:*:*:*:*
oracle airlines_data_model 12.1.1.0.0 - - cpe:2.3:a:oracle:airlines_data_model:12.1.1.0.0:*:*:*:*:*:*:*
oracle airlines_data_model 12.2.0.1.0 - - cpe:2.3:a:oracle:airlines_data_model:12.2.0.1.0:*:*:*:*:*:*:*
oracle application_performance_management 13.4.1.0 - - cpe:2.3:a:oracle:application_performance_management:13.4.1.0:*:*:*:*:*:*:*
oracle application_performance_management 13.5.1.0 - - cpe:2.3:a:oracle:application_performance_management:13.5.1.0:*:*:*:*:*:*:*
oracle application_testing_suite 13.3.0.1 - - cpe:2.3:a:oracle:application_testing_suite:13.3.0.1:*:*:*:*:*:*:*
oracle argus_analytics 8.2.1 - - cpe:2.3:a:oracle:argus_analytics:8.2.1:*:*:*:*:*:*:*
oracle argus_analytics 8.2.2 - - cpe:2.3:a:oracle:argus_analytics:8.2.2:*:*:*:*:*:*:*
oracle argus_analytics 8.2.3 - - cpe:2.3:a:oracle:argus_analytics:8.2.3:*:*:*:*:*:*:*
oracle argus_insight 8.2.1 - - cpe:2.3:a:oracle:argus_insight:8.2.1:*:*:*:*:*:*:*
oracle argus_insight 8.2.2 - - cpe:2.3:a:oracle:argus_insight:8.2.2:*:*:*:*:*:*:*
oracle argus_insight 8.2.3 - - cpe:2.3:a:oracle:argus_insight:8.2.3:*:*:*:*:*:*:*
oracle argus_mart 8.2.1 - - cpe:2.3:a:oracle:argus_mart:8.2.1:*:*:*:*:*:*:*
oracle argus_mart 8.2.2 - - cpe:2.3:a:oracle:argus_mart:8.2.2:*:*:*:*:*:*:*
oracle argus_mart 8.2.3 - - cpe:2.3:a:oracle:argus_mart:8.2.3:*:*:*:*:*:*:*
oracle argus_safety 8.2.1 - - cpe:2.3:a:oracle:argus_safety:8.2.1:*:*:*:*:*:*:*
oracle argus_safety 8.2.2 - - cpe:2.3:a:oracle:argus_safety:8.2.2:*:*:*:*:*:*:*
oracle argus_safety 8.2.3 - - cpe:2.3:a:oracle:argus_safety:8.2.3:*:*:*:*:*:*:*
oracle banking_apis * - - cpe:2.3:a:oracle:banking_apis:*:*:*:*:*:*:*:*
oracle banking_apis 19.1 - - cpe:2.3:a:oracle:banking_apis:19.1:*:*:*:*:*:*:*
oracle banking_apis 19.2 - - cpe:2.3:a:oracle:banking_apis:19.2:*:*:*:*:*:*:*
oracle banking_apis 20.1 - - cpe:2.3:a:oracle:banking_apis:20.1:*:*:*:*:*:*:*
oracle banking_apis 21.1 - - cpe:2.3:a:oracle:banking_apis:21.1:*:*:*:*:*:*:*
oracle banking_digital_experience * - - cpe:2.3:a:oracle:banking_digital_experience:*:*:*:*:*:*:*:*
oracle banking_digital_experience 17.2 - - cpe:2.3:a:oracle:banking_digital_experience:17.2:*:*:*:*:*:*:*
oracle banking_digital_experience 19.1 - - cpe:2.3:a:oracle:banking_digital_experience:19.1:*:*:*:*:*:*:*
oracle banking_digital_experience 19.2 - - cpe:2.3:a:oracle:banking_digital_experience:19.2:*:*:*:*:*:*:*
oracle banking_digital_experience 20.1 - - cpe:2.3:a:oracle:banking_digital_experience:20.1:*:*:*:*:*:*:*
oracle banking_digital_experience 21.1 - - cpe:2.3:a:oracle:banking_digital_experience:21.1:*:*:*:*:*:*:*
oracle banking_enterprise_default_management 2.10.0 - - cpe:2.3:a:oracle:banking_enterprise_default_management:2.10.0:*:*:*:*:*:*:*
oracle banking_enterprise_default_management 2.12.0 - - cpe:2.3:a:oracle:banking_enterprise_default_management:2.12.0:*:*:*:*:*:*:*
oracle banking_platform 2.6.2 - - cpe:2.3:a:oracle:banking_platform:2.6.2:*:*:*:*:*:*:*
oracle banking_platform 2.7.1 - - cpe:2.3:a:oracle:banking_platform:2.7.1:*:*:*:*:*:*:*
oracle banking_platform 2.12.0 - - cpe:2.3:a:oracle:banking_platform:2.12.0:*:*:*:*:*:*:*
oracle big_data_spatial_and_graph * - - cpe:2.3:a:oracle:big_data_spatial_and_graph:*:*:*:*:*:*:*:*
oracle blockchain_platform 21.1.2 - - cpe:2.3:a:oracle:blockchain_platform:21.1.2:*:*:*:*:*:*:*
oracle clinical 5.2.1 - - cpe:2.3:a:oracle:clinical:5.2.1:*:*:*:*:*:*:*
oracle clinical 5.2.2 - - cpe:2.3:a:oracle:clinical:5.2.2:*:*:*:*:*:*:*
oracle commerce_platform 11.3.0 - - cpe:2.3:a:oracle:commerce_platform:11.3.0:*:*:*:*:*:*:*
oracle commerce_platform 11.3.1 - - cpe:2.3:a:oracle:commerce_platform:11.3.1:*:*:*:*:*:*:*
oracle commerce_platform 11.3.2 - - cpe:2.3:a:oracle:commerce_platform:11.3.2:*:*:*:*:*:*:*
oracle communications_application_session_controller 3.9.0 - - cpe:2.3:a:oracle:communications_application_session_controller:3.9.0:*:*:*:*:*:*:*
oracle communications_billing_and_revenue_management 12.0.0.4 - - cpe:2.3:a:oracle:communications_billing_and_revenue_management:12.0.0.4:*:*:*:*:*:*:*
oracle communications_billing_and_revenue_management 12.0.0.5 - - cpe:2.3:a:oracle:communications_billing_and_revenue_management:12.0.0.5:*:*:*:*:*:*:*
oracle communications_calendar_server 8.0.0.5.0 - - cpe:2.3:a:oracle:communications_calendar_server:8.0.0.5.0:*:*:*:*:*:*:*
oracle communications_contacts_server 8.0.0.3.0 - - cpe:2.3:a:oracle:communications_contacts_server:8.0.0.3.0:*:*:*:*:*:*:*
oracle communications_convergent_charging_controller * - - cpe:2.3:a:oracle:communications_convergent_charging_controller:*:*:*:*:*:*:*:*
oracle communications_convergent_charging_controller 6.0.1.0.0 - - cpe:2.3:a:oracle:communications_convergent_charging_controller:6.0.1.0.0:*:*:*:*:*:*:*
oracle communications_data_model 11.3.2.1.0 - - cpe:2.3:a:oracle:communications_data_model:11.3.2.1.0:*:*:*:*:*:*:*
oracle communications_data_model 11.3.2.2.0 - - cpe:2.3:a:oracle:communications_data_model:11.3.2.2.0:*:*:*:*:*:*:*
oracle communications_data_model 11.3.2.3.0 - - cpe:2.3:a:oracle:communications_data_model:11.3.2.3.0:*:*:*:*:*:*:*
oracle communications_data_model 12.1.0.1.0 - - cpe:2.3:a:oracle:communications_data_model:12.1.0.1.0:*:*:*:*:*:*:*
oracle communications_data_model 12.1.2.0.0 - - cpe:2.3:a:oracle:communications_data_model:12.1.2.0.0:*:*:*:*:*:*:*
oracle communications_design_studio 7.3.5 - - cpe:2.3:a:oracle:communications_design_studio:7.3.5:*:*:*:*:*:*:*
oracle communications_design_studio 7.4.0 - - cpe:2.3:a:oracle:communications_design_studio:7.4.0:*:*:*:*:*:*:*
oracle communications_design_studio 7.4.1 - - cpe:2.3:a:oracle:communications_design_studio:7.4.1:*:*:*:*:*:*:*
oracle communications_design_studio 7.4.2 - - cpe:2.3:a:oracle:communications_design_studio:7.4.2:*:*:*:*:*:*:*
oracle communications_diameter_intelligence_hub * - - cpe:2.3:a:oracle:communications_diameter_intelligence_hub:*:*:*:*:*:*:*:*
oracle communications_ip_service_activator 7.4.0 - - cpe:2.3:a:oracle:communications_ip_service_activator:7.4.0:*:*:*:*:*:*:*
oracle communications_metasolv_solution 6.3.1 - - cpe:2.3:a:oracle:communications_metasolv_solution:6.3.1:*:*:*:*:*:*:*
oracle communications_network_charging_and_control * - - cpe:2.3:a:oracle:communications_network_charging_and_control:*:*:*:*:*:*:*:*
oracle communications_network_charging_and_control 6.0.1.0.0 - - cpe:2.3:a:oracle:communications_network_charging_and_control:6.0.1.0.0:*:*:*:*:*:*:*
oracle communications_network_integrity 7.3.5 - - cpe:2.3:a:oracle:communications_network_integrity:7.3.5:*:*:*:*:*:*:*
oracle communications_network_integrity 7.3.6 - - cpe:2.3:a:oracle:communications_network_integrity:7.3.6:*:*:*:*:*:*:*
oracle communications_pricing_design_center 12.0.0.4 - - cpe:2.3:a:oracle:communications_pricing_design_center:12.0.0.4:*:*:*:*:*:*:*
oracle communications_pricing_design_center 12.0.0.5 - - cpe:2.3:a:oracle:communications_pricing_design_center:12.0.0.5:*:*:*:*:*:*:*
oracle communications_services_gatekeeper 7.0 - - cpe:2.3:a:oracle:communications_services_gatekeeper:7.0:*:*:*:*:*:*:*
oracle communications_session_report_manager * - - cpe:2.3:a:oracle:communications_session_report_manager:*:*:*:*:*:*:*:*
oracle communications_session_route_manager * - - cpe:2.3:a:oracle:communications_session_route_manager:*:*:*:*:*:*:*:*
oracle data_integrator 12.2.1.3.0 - - cpe:2.3:a:oracle:data_integrator:12.2.1.3.0:*:*:*:*:*:*:*
oracle data_integrator 12.2.1.4.0 - - cpe:2.3:a:oracle:data_integrator:12.2.1.4.0:*:*:*:*:*:*:*
oracle demantra_demand_management * - - cpe:2.3:a:oracle:demantra_demand_management:*:*:*:*:*:*:*:*
oracle documaker * - - cpe:2.3:a:oracle:documaker:*:*:*:*:*:*:*:*
oracle documaker 12.6.0 - - cpe:2.3:a:oracle:documaker:12.6.0:*:*:*:*:*:*:*
oracle documaker 12.7.0 - - cpe:2.3:a:oracle:documaker:12.7.0:*:*:*:*:*:*:*
oracle enterprise_data_quality 12.2.1.3.0 - - cpe:2.3:a:oracle:enterprise_data_quality:12.2.1.3.0:*:*:*:*:*:*:*
oracle enterprise_data_quality 12.2.1.4.0 - - cpe:2.3:a:oracle:enterprise_data_quality:12.2.1.4.0:*:*:*:*:*:*:*
oracle enterprise_manager_base_platform 13.4.0.0 - - cpe:2.3:a:oracle:enterprise_manager_base_platform:13.4.0.0:*:*:*:*:*:*:*
oracle enterprise_manager_base_platform 13.5.0.0 - - cpe:2.3:a:oracle:enterprise_manager_base_platform:13.5.0.0:*:*:*:*:*:*:*
oracle enterprise_manager_ops_center 12.4.0.0 - - cpe:2.3:a:oracle:enterprise_manager_ops_center:12.4.0.0:*:*:*:*:*:*:*
oracle financial_services_analytical_applications_infrastructure * - - cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:*:*:*:*:*:*:*:*
oracle financial_services_behavior_detection_platform 8.0.7 - - cpe:2.3:a:oracle:financial_services_behavior_detection_platform:8.0.7:*:*:*:*:*:*:*
oracle financial_services_behavior_detection_platform 8.0.8 - - cpe:2.3:a:oracle:financial_services_behavior_detection_platform:8.0.8:*:*:*:*:*:*:*
oracle financial_services_behavior_detection_platform 8.0.11 - - cpe:2.3:a:oracle:financial_services_behavior_detection_platform:8.0.11:*:*:*:*:*:*:*
oracle financial_services_enterprise_case_management 8.0.7 - - cpe:2.3:a:oracle:financial_services_enterprise_case_management:8.0.7:*:*:*:*:*:*:*
oracle financial_services_enterprise_case_management 8.0.8 - - cpe:2.3:a:oracle:financial_services_enterprise_case_management:8.0.8:*:*:*:*:*:*:*
oracle financial_services_enterprise_case_management 8.0.11 - - cpe:2.3:a:oracle:financial_services_enterprise_case_management:8.0.11:*:*:*:*:*:*:*
oracle financial_services_foreign_account_tax_compliance_act_management 8.0.7 - - cpe:2.3:a:oracle:financial_services_foreign_account_tax_compliance_act_management:8.0.7:*:*:*:*:*:*:*
oracle financial_services_foreign_account_tax_compliance_act_management 8.0.8 - - cpe:2.3:a:oracle:financial_services_foreign_account_tax_compliance_act_management:8.0.8:*:*:*:*:*:*:*
oracle financial_services_foreign_account_tax_compliance_act_management 8.0.11 - - cpe:2.3:a:oracle:financial_services_foreign_account_tax_compliance_act_management:8.0.11:*:*:*:*:*:*:*
oracle financial_services_model_management_and_governance * - - cpe:2.3:a:oracle:financial_services_model_management_and_governance:*:*:*:*:*:*:*:*
oracle financial_services_trade-based_anti_money_laundering 8.0.7 - - cpe:2.3:a:oracle:financial_services_trade-based_anti_money_laundering:8.0.7:*:*:*:enterprise:*:*:*
oracle financial_services_trade-based_anti_money_laundering 8.0.8 - - cpe:2.3:a:oracle:financial_services_trade-based_anti_money_laundering:8.0.8:*:*:*:enterprise:*:*:*
oracle flexcube_investor_servicing 12.0.4 - - cpe:2.3:a:oracle:flexcube_investor_servicing:12.0.4:*:*:*:*:*:*:*
oracle flexcube_investor_servicing 12.1.0 - - cpe:2.3:a:oracle:flexcube_investor_servicing:12.1.0:*:*:*:*:*:*:*
oracle flexcube_investor_servicing 12.3.0 - - cpe:2.3:a:oracle:flexcube_investor_servicing:12.3.0:*:*:*:*:*:*:*
oracle flexcube_investor_servicing 12.4.0 - - cpe:2.3:a:oracle:flexcube_investor_servicing:12.4.0:*:*:*:*:*:*:*
oracle flexcube_investor_servicing 14.4.0 - - cpe:2.3:a:oracle:flexcube_investor_servicing:14.4.0:*:*:*:*:*:*:*
oracle flexcube_investor_servicing 14.5.0 - - cpe:2.3:a:oracle:flexcube_investor_servicing:14.5.0:*:*:*:*:*:*:*
oracle flexcube_private_banking 12.0.0 - - cpe:2.3:a:oracle:flexcube_private_banking:12.0.0:*:*:*:*:*:*:*
oracle flexcube_private_banking 12.1.0 - - cpe:2.3:a:oracle:flexcube_private_banking:12.1.0:*:*:*:*:*:*:*
oracle fusion_middleware 12.2.1.3.0 - - cpe:2.3:a:oracle:fusion_middleware:12.2.1.3.0:*:*:*:*:*:*:*
oracle fusion_middleware 12.2.1.4.0 - - cpe:2.3:a:oracle:fusion_middleware:12.2.1.4.0:*:*:*:*:*:*:*
oracle goldengate * - - cpe:2.3:a:oracle:goldengate:*:*:*:*:*:*:*:*
oracle goldengate_application_adapters * - - cpe:2.3:a:oracle:goldengate_application_adapters:*:*:*:*:*:*:*:*
oracle graph_server_and_client * - - cpe:2.3:a:oracle:graph_server_and_client:*:*:*:*:*:*:*:*
oracle health_sciences_clinical_development_analytics 4.0.1 - - cpe:2.3:a:oracle:health_sciences_clinical_development_analytics:4.0.1:*:*:*:*:*:*:*
oracle health_sciences_inform_crf_submit 6.2.1 - - cpe:2.3:a:oracle:health_sciences_inform_crf_submit:6.2.1:*:*:*:*:*:*:*
oracle health_sciences_information_manager 3.0.2 - - cpe:2.3:a:oracle:health_sciences_information_manager:3.0.2:*:*:*:*:*:*:*
oracle health_sciences_information_manager 3.0.3 - - cpe:2.3:a:oracle:health_sciences_information_manager:3.0.3:*:*:*:*:*:*:*
oracle healthcare_data_repository 7.0.2 - - cpe:2.3:a:oracle:healthcare_data_repository:7.0.2:*:*:*:*:*:*:*
oracle healthcare_data_repository 8.1.0 - - cpe:2.3:a:oracle:healthcare_data_repository:8.1.0:*:*:*:*:*:*:*
oracle healthcare_data_repository 8.1.1 - - cpe:2.3:a:oracle:healthcare_data_repository:8.1.1:*:*:*:*:*:*:*
oracle healthcare_foundation * - - cpe:2.3:a:oracle:healthcare_foundation:*:*:*:*:*:*:*:*
oracle healthcare_translational_research 4.1.0 - - cpe:2.3:a:oracle:healthcare_translational_research:4.1.0:*:*:*:*:*:*:*
oracle hospitality_inventory_management * - - cpe:2.3:a:oracle:hospitality_inventory_management:*:*:*:*:*:*:*:*
oracle hospitality_inventory_management 9.1.0 - - cpe:2.3:a:oracle:hospitality_inventory_management:9.1.0:*:*:*:*:*:*:*
oracle hospitality_opera_5 5.6 - - cpe:2.3:a:oracle:hospitality_opera_5:5.6:*:*:*:*:*:*:*
oracle hospitality_reporting_and_analytics 9.1.0 - - cpe:2.3:a:oracle:hospitality_reporting_and_analytics:9.1.0:*:*:*:*:*:*:*
oracle hospitality_suite8 8.10.2 - - cpe:2.3:a:oracle:hospitality_suite8:8.10.2:*:*:*:*:*:*:*
oracle hospitality_suite8 8.11.0 - - cpe:2.3:a:oracle:hospitality_suite8:8.11.0:*:*:*:*:*:*:*
oracle hospitality_suite8 8.12.0 - - cpe:2.3:a:oracle:hospitality_suite8:8.12.0:*:*:*:*:*:*:*
oracle hospitality_suite8 8.13.0 - - cpe:2.3:a:oracle:hospitality_suite8:8.13.0:*:*:*:*:*:*:*
oracle hospitality_suite8 8.14.0 - - cpe:2.3:a:oracle:hospitality_suite8:8.14.0:*:*:*:*:*:*:*
oracle hyperion_infrastructure_technology 11.2.7.0 - - cpe:2.3:a:oracle:hyperion_infrastructure_technology:11.2.7.0:*:*:*:*:*:*:*
oracle ilearning 6.2 - - cpe:2.3:a:oracle:ilearning:6.2:*:*:*:*:*:*:*
oracle ilearning 6.3 - - cpe:2.3:a:oracle:ilearning:6.3:*:*:*:*:*:*:*
oracle instantis_enterprisetrack 17.1 - - cpe:2.3:a:oracle:instantis_enterprisetrack:17.1:*:*:*:*:*:*:*
oracle instantis_enterprisetrack 17.2 - - cpe:2.3:a:oracle:instantis_enterprisetrack:17.2:*:*:*:*:*:*:*
oracle instantis_enterprisetrack 17.3 - - cpe:2.3:a:oracle:instantis_enterprisetrack:17.3:*:*:*:*:*:*:*
oracle insurance_data_gateway 11.0.2 - - cpe:2.3:a:oracle:insurance_data_gateway:11.0.2:*:*:*:*:*:*:*
oracle insurance_data_gateway 11.1.0 - - cpe:2.3:a:oracle:insurance_data_gateway:11.1.0:*:*:*:*:*:*:*
oracle insurance_data_gateway 11.2.7 - - cpe:2.3:a:oracle:insurance_data_gateway:11.2.7:*:*:*:*:*:*:*
oracle insurance_data_gateway 11.3.0 - - cpe:2.3:a:oracle:insurance_data_gateway:11.3.0:*:*:*:*:*:*:*
oracle insurance_data_gateway 11.3.1 - - cpe:2.3:a:oracle:insurance_data_gateway:11.3.1:*:*:*:*:*:*:*
oracle insurance_insbridge_rating_and_underwriting * - - cpe:2.3:a:oracle:insurance_insbridge_rating_and_underwriting:*:*:*:*:*:*:*:*
oracle insurance_insbridge_rating_and_underwriting 5.2.0 - - cpe:2.3:a:oracle:insurance_insbridge_rating_and_underwriting:5.2.0:*:*:*:*:*:*:*
oracle insurance_policy_administration 11.0.2 - - cpe:2.3:a:oracle:insurance_policy_administration:11.0.2:*:*:*:*:*:*:*
oracle insurance_policy_administration 11.1.0 - - cpe:2.3:a:oracle:insurance_policy_administration:11.1.0:*:*:*:*:*:*:*
oracle insurance_policy_administration 11.2.7 - - cpe:2.3:a:oracle:insurance_policy_administration:11.2.7:*:*:*:*:*:*:*
oracle insurance_policy_administration 11.3.0 - - cpe:2.3:a:oracle:insurance_policy_administration:11.3.0:*:*:*:*:*:*:*
oracle insurance_policy_administration 11.3.1 - - cpe:2.3:a:oracle:insurance_policy_administration:11.3.1:*:*:*:*:*:*:*
oracle insurance_rules_palette 11.0.2 - - cpe:2.3:a:oracle:insurance_rules_palette:11.0.2:*:*:*:*:*:*:*
oracle insurance_rules_palette 11.1.0 - - cpe:2.3:a:oracle:insurance_rules_palette:11.1.0:*:*:*:*:*:*:*
oracle insurance_rules_palette 11.2.7 - - cpe:2.3:a:oracle:insurance_rules_palette:11.2.7:*:*:*:*:*:*:*
oracle insurance_rules_palette 11.3.0 - - cpe:2.3:a:oracle:insurance_rules_palette:11.3.0:*:*:*:*:*:*:*
oracle insurance_rules_palette 11.3.1 - - cpe:2.3:a:oracle:insurance_rules_palette:11.3.1:*:*:*:*:*:*:*
oracle jd_edwards_enterpriseone_tools 9.2.6.3 - - cpe:2.3:a:oracle:jd_edwards_enterpriseone_tools:9.2.6.3:*:*:*:*:*:*:*
oracle oss_support_tools * - - cpe:2.3:a:oracle:oss_support_tools:*:*:*:*:*:*:*:*
oracle peoplesoft_enterprise_peopletools 8.57 - - cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.57:*:*:*:*:*:*:*
oracle peoplesoft_enterprise_peopletools 8.58 - - cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58:*:*:*:*:*:*:*
oracle peoplesoft_enterprise_peopletools 8.59 - - cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.59:*:*:*:*:*:*:*
oracle policy_automation * - - cpe:2.3:a:oracle:policy_automation:*:*:*:*:*:*:*:*
oracle primavera_analytics 18.8.3.3 - - cpe:2.3:a:oracle:primavera_analytics:18.8.3.3:*:*:*:*:*:*:*
oracle primavera_analytics 19.12.11.1 - - cpe:2.3:a:oracle:primavera_analytics:19.12.11.1:*:*:*:*:*:*:*
oracle primavera_analytics 20.12.12.0 - - cpe:2.3:a:oracle:primavera_analytics:20.12.12.0:*:*:*:*:*:*:*
oracle primavera_data_warehouse 18.8.3.3 - - cpe:2.3:a:oracle:primavera_data_warehouse:18.8.3.3:*:*:*:*:*:*:*
oracle primavera_data_warehouse 19.12.11.1 - - cpe:2.3:a:oracle:primavera_data_warehouse:19.12.11.1:*:*:*:*:*:*:*
oracle primavera_data_warehouse 20.12.12.0 - - cpe:2.3:a:oracle:primavera_data_warehouse:20.12.12.0:*:*:*:*:*:*:*
oracle primavera_gateway * - - cpe:2.3:a:oracle:primavera_gateway:*:*:*:*:*:*:*:*
oracle primavera_p6_enterprise_project_portfolio_management * - - cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:*:*:*:*:*:*:*:*
oracle primavera_p6_professional_project_management * - - cpe:2.3:a:oracle:primavera_p6_professional_project_management:*:*:*:*:*:*:*:*
oracle primavera_unifier * - - cpe:2.3:a:oracle:primavera_unifier:*:*:*:*:*:*:*:*
oracle primavera_unifier 18.8 - - cpe:2.3:a:oracle:primavera_unifier:18.8:*:*:*:*:*:*:*
oracle primavera_unifier 19.12 - - cpe:2.3:a:oracle:primavera_unifier:19.12:*:*:*:*:*:*:*
oracle primavera_unifier 20.12 - - cpe:2.3:a:oracle:primavera_unifier:20.12:*:*:*:*:*:*:*
oracle primavera_unifier 21.12 - - cpe:2.3:a:oracle:primavera_unifier:21.12:*:*:*:*:*:*:*
oracle product_lifecycle_analytics 3.6.1 - - cpe:2.3:a:oracle:product_lifecycle_analytics:3.6.1:*:*:*:*:*:*:*
oracle rapid_planning * - - cpe:2.3:a:oracle:rapid_planning:*:*:*:*:*:*:*:*
oracle real_user_experience_insight 13.4.1.0 - - cpe:2.3:a:oracle:real_user_experience_insight:13.4.1.0:*:*:*:*:*:*:*
oracle real_user_experience_insight 13.5.1.0 - - cpe:2.3:a:oracle:real_user_experience_insight:13.5.1.0:*:*:*:*:*:*:*
oracle retail_analytics * - - cpe:2.3:a:oracle:retail_analytics:*:*:*:*:*:*:*:*
oracle retail_assortment_planning 16.0.3 - - cpe:2.3:a:oracle:retail_assortment_planning:16.0.3:*:*:*:*:*:*:*
oracle retail_back_office 14.1 - - cpe:2.3:a:oracle:retail_back_office:14.1:*:*:*:*:*:*:*
oracle retail_central_office 14.1 - - cpe:2.3:a:oracle:retail_central_office:14.1:*:*:*:*:*:*:*
oracle retail_customer_insights * - - cpe:2.3:a:oracle:retail_customer_insights:*:*:*:*:*:*:*:*
oracle retail_extract_transform_and_load 13.2.8 - - cpe:2.3:a:oracle:retail_extract_transform_and_load:13.2.8:*:*:*:*:*:*:*
oracle retail_financial_integration 14.1.3.2 - - cpe:2.3:a:oracle:retail_financial_integration:14.1.3.2:*:*:*:*:*:*:*
oracle retail_financial_integration 15.0.3.1 - - cpe:2.3:a:oracle:retail_financial_integration:15.0.3.1:*:*:*:*:*:*:*
oracle retail_financial_integration 16.0.3.0 - - cpe:2.3:a:oracle:retail_financial_integration:16.0.3.0:*:*:*:*:*:*:*
oracle retail_financial_integration 19.0.1 - - cpe:2.3:a:oracle:retail_financial_integration:19.0.1:*:*:*:*:*:*:*
oracle retail_integration_bus 14.1.3.2 - - cpe:2.3:a:oracle:retail_integration_bus:14.1.3.2:*:*:*:*:*:*:*
oracle retail_integration_bus 15.0.3.1 - - cpe:2.3:a:oracle:retail_integration_bus:15.0.3.1:*:*:*:*:*:*:*
oracle retail_integration_bus 16.0.3 - - cpe:2.3:a:oracle:retail_integration_bus:16.0.3:*:*:*:*:*:*:*
oracle retail_integration_bus 19.0.1 - - cpe:2.3:a:oracle:retail_integration_bus:19.0.1:*:*:*:*:*:*:*
oracle retail_merchandising_system 19.0.1 - - cpe:2.3:a:oracle:retail_merchandising_system:19.0.1:*:*:*:*:*:*:*
oracle retail_order_broker 16.0 - - cpe:2.3:a:oracle:retail_order_broker:16.0:*:*:*:*:*:*:*
oracle retail_order_broker 18.0 - - cpe:2.3:a:oracle:retail_order_broker:18.0:*:*:*:*:*:*:*
oracle retail_order_broker 19.1 - - cpe:2.3:a:oracle:retail_order_broker:19.1:*:*:*:*:*:*:*
oracle retail_order_management_system 19.5 - - cpe:2.3:a:oracle:retail_order_management_system:19.5:*:*:*:*:*:*:*
oracle retail_point-of-service 14.1 - - cpe:2.3:a:oracle:retail_point-of-service:14.1:*:*:*:*:*:*:*
oracle retail_predictive_application_server 14.1.3 - - cpe:2.3:a:oracle:retail_predictive_application_server:14.1.3:*:*:*:*:*:*:*
oracle retail_predictive_application_server 15.0.3 - - cpe:2.3:a:oracle:retail_predictive_application_server:15.0.3:*:*:*:*:*:*:*
oracle retail_predictive_application_server 16.0.3 - - cpe:2.3:a:oracle:retail_predictive_application_server:16.0.3:*:*:*:*:*:*:*
oracle retail_price_management 14.1 - - cpe:2.3:a:oracle:retail_price_management:14.1:*:*:*:*:*:*:*
oracle retail_price_management 15.0 - - cpe:2.3:a:oracle:retail_price_management:15.0:*:*:*:*:*:*:*
oracle retail_price_management 16.0 - - cpe:2.3:a:oracle:retail_price_management:16.0:*:*:*:*:*:*:*
oracle retail_returns_management 14.1 - - cpe:2.3:a:oracle:retail_returns_management:14.1:*:*:*:*:*:*:*
oracle retail_service_backbone 14.1.3.2 - - cpe:2.3:a:oracle:retail_service_backbone:14.1.3.2:*:*:*:*:*:*:*
oracle retail_service_backbone 15.0.3.1 - - cpe:2.3:a:oracle:retail_service_backbone:15.0.3.1:*:*:*:*:*:*:*
oracle retail_service_backbone 16.0.3 - - cpe:2.3:a:oracle:retail_service_backbone:16.0.3:*:*:*:*:*:*:*
oracle retail_service_backbone 19.0.1 - - cpe:2.3:a:oracle:retail_service_backbone:19.0.1:*:*:*:*:*:*:*
oracle retail_store_inventory_management 14.1 - - cpe:2.3:a:oracle:retail_store_inventory_management:14.1:*:*:*:*:*:*:*
oracle retail_store_inventory_management 15.0 - - cpe:2.3:a:oracle:retail_store_inventory_management:15.0:*:*:*:*:*:*:*
oracle retail_store_inventory_management 16.0 - - cpe:2.3:a:oracle:retail_store_inventory_management:16.0:*:*:*:*:*:*:*
oracle retail_xstore_point_of_service 17.0.4 - - cpe:2.3:a:oracle:retail_xstore_point_of_service:17.0.4:*:*:*:*:*:*:*
oracle retail_xstore_point_of_service 18.0.3 - - cpe:2.3:a:oracle:retail_xstore_point_of_service:18.0.3:*:*:*:*:*:*:*
oracle retail_xstore_point_of_service 19.0.2 - - cpe:2.3:a:oracle:retail_xstore_point_of_service:19.0.2:*:*:*:*:*:*:*
oracle retail_xstore_point_of_service 20.0.1 - - cpe:2.3:a:oracle:retail_xstore_point_of_service:20.0.1:*:*:*:*:*:*:*
oracle siebel_ui_framework * - - cpe:2.3:a:oracle:siebel_ui_framework:*:*:*:*:*:*:*:*
oracle spatial_studio * - - cpe:2.3:a:oracle:spatial_studio:*:*:*:*:*:*:*:*
oracle storagetek_acsls 8.5.1 - - cpe:2.3:a:oracle:storagetek_acsls:8.5.1:*:*:*:*:*:*:*
oracle storagetek_tape_analytics 2.4 - - cpe:2.3:a:oracle:storagetek_tape_analytics:2.4:*:*:*:*:*:*:*
oracle thesaurus_management_system 5.2.3 - - cpe:2.3:a:oracle:thesaurus_management_system:5.2.3:*:*:*:*:*:*:*
oracle thesaurus_management_system 5.3.0 - - cpe:2.3:a:oracle:thesaurus_management_system:5.3.0:*:*:*:*:*:*:*
oracle thesaurus_management_system 5.3.1 - - cpe:2.3:a:oracle:thesaurus_management_system:5.3.1:*:*:*:*:*:*:*
oracle timesten_in-memory_database * - - cpe:2.3:a:oracle:timesten_in-memory_database:*:*:*:*:*:*:*:*
oracle timesten_in-memory_database 21.1.1.1.0 - - cpe:2.3:a:oracle:timesten_in-memory_database:21.1.1.1.0:*:*:*:*:*:*:*
oracle utilities_framework * - - cpe:2.3:a:oracle:utilities_framework:*:*:*:*:*:*:*:*
oracle utilities_framework 4.2.0.3.0 - - cpe:2.3:a:oracle:utilities_framework:4.2.0.3.0:*:*:*:*:*:*:*
oracle utilities_framework 4.4.0.0.0 - - cpe:2.3:a:oracle:utilities_framework:4.4.0.0.0:*:*:*:*:*:*:*
oracle utilities_framework 4.4.0.2.0 - - cpe:2.3:a:oracle:utilities_framework:4.4.0.2.0:*:*:*:*:*:*:*
oracle utilities_framework 4.4.0.3.0 - - cpe:2.3:a:oracle:utilities_framework:4.4.0.3.0:*:*:*:*:*:*:*
oracle utilities_testing_accelerator 6.0.0.1.1 - - cpe:2.3:a:oracle:utilities_testing_accelerator:6.0.0.1.1:*:*:*:*:*:*:*
oracle utilities_testing_accelerator 6.0.0.2.2 - - cpe:2.3:a:oracle:utilities_testing_accelerator:6.0.0.2.2:*:*:*:*:*:*:*
oracle utilities_testing_accelerator 6.0.0.3.1 - - cpe:2.3:a:oracle:utilities_testing_accelerator:6.0.0.3.1:*:*:*:*:*:*:*
oracle weblogic_server 12.2.1.3.0 - - cpe:2.3:a:oracle:weblogic_server:12.2.1.3.0:*:*:*:*:*:*:*
oracle weblogic_server 12.2.1.4.0 - - cpe:2.3:a:oracle:weblogic_server:12.2.1.4.0:*:*:*:*:*:*:*
oracle weblogic_server 14.1.1.0.0 - - cpe:2.3:a:oracle:weblogic_server:14.1.1.0.0:*:*:*:*:*:*:*
oracle zfs_storage_application_integration_engineering_software 1.3.3 - - cpe:2.3:a:oracle:zfs_storage_application_integration_engineering_software:1.3.3:*:*:*:*:*:*:*
解决方案
中文解决方案:
(暂无数据)
英文解决方案:
(暂无数据)
临时解决方案:
(暂无数据)
参考链接
无标题 x_refsource_MISC
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
20211210 [SYSS-2021-061] Oracle Database - NNE Connection Hijacking mailing-list
cve.org
访问
20211210 [SYSS-2021-062] Oracle Database - Weak NNE Integrity Key Derivation mailing-list
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
Oracle Advisory vendor-advisory
cve.org
访问
CVSS评分详情
3.1 (cna)
HIGH
8.3
CVSS向量: CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
机密性
HIGH
完整性
HIGH
可用性
HIGH
时间信息
发布时间:
2021-07-20 22:43:29
修改时间:
2024-08-03 16:38:57
创建时间:
2025-11-11 15:36:41
更新时间:
2025-11-11 15:56:48
利用信息
暂无可利用代码信息
数据源详情
数据源 记录ID 版本 提取时间
CVE cve_CVE-2021-2351 2025-11-11 15:20:56 2025-11-11 07:36:41
NVD nvd_CVE-2021-2351 2025-11-11 14:57:39 2025-11-11 07:45:01
CNNVD cnnvd_CNNVD-202107-1424 2025-11-11 15:10:41 2025-11-11 07:56:48
版本与语言
当前版本: v3
主要语言: EN
支持语言:
EN ZH
安全公告
暂无安全公告信息
变更历史
v3 CNNVD
2025-11-11 15:56:48
vulnerability_type: 未提取 → 授权问题; cnnvd_id: 未提取 → CNNVD-202107-1424; data_sources: ['cve', 'nvd'] → ['cnnvd', 'cve', 'nvd']
查看详细变更
  • vulnerability_type: 未提取 -> 授权问题
  • cnnvd_id: 未提取 -> CNNVD-202107-1424
  • data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
v2 NVD
2025-11-11 15:45:01
affected_products_count: 3 → 239; data_sources: ['cve'] → ['cve', 'nvd']
查看详细变更
  • affected_products_count: 3 -> 239
  • data_sources: ['cve'] -> ['cve', 'nvd']