// For flags

CVE-2020-5398

RFD Attack via "Content-Disposition" Header Sourced from Request Input by Spring MVC or Spring WebFlux Application

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

In Spring Framework, versions 5.2.x prior to 5.2.3, versions 5.1.x prior to 5.1.13, and versions 5.0.x prior to 5.0.16, an application is vulnerable to a reflected file download (RFD) attack when it sets a "Content-Disposition" header in the response where the filename attribute is derived from user supplied input.

En Spring Framework, versiones 5.2.x anteriores a 5.2.3, versiones 5.1.x anteriores a 5.1.13 y versiones 5.0.x anteriores a 5.0.16, una aplicaciĆ³n es vulnerable a un ataque de tipo reflected file download (RFD) cuando se establece un encabezado "Content-Disposition" en la respuesta donde el atributo filename es derivado de la entrada suministrada por el usuario.

A flaw was found in springframework in versions prior to 5.0.16, 5.1.13, and 5.2.3. A reflected file download (RFD) attack is possible when a "Content-Disposition" header is set in response to where the filename attribute is derived from user supplied input. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
High
Privileges Required
Low
User Interaction
Required
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
High
Privileges Required
Low
User Interaction
Required
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
High
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-01-03 CVE Reserved
  • 2020-01-16 CVE Published
  • 2022-12-15 First Exploit
  • 2024-05-11 EPSS Updated
  • 2024-09-16 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
  • CWE-494: Download of Code Without Integrity Check
CAPEC
References (47)
URL Tag Source
https://lists.apache.org/thread.html/r028977b9b9d44a89823639aa3296fb0f0cfdd76b4450df89d3c4fbbf%40%3Cissues.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r0f2d0ae1bad2edb3d4a863d77f3097b5e88cfbdae7b809f4f42d6aad%40%3Cissues.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r0f3530f7cb510036e497532ffc4e0bd0b882940448cf4e233994b08b%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r1accbd4f31ad2f40e1661d70a4510a584eb3efd1e32e8660ccf46676%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r1bc5d673c01cfbb8e4a91914e9748ead3e5f56b61bca54d314c0419b%40%3Cissues.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r1c679c43fa4f7846d748a937955c7921436d1b315445978254442163%40%3Ccommits.ambari.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r1eccdbd7986618a7319ee7a533bd9d9bf6e8678e59dd4cca9b5b2d7a%40%3Cissues.ambari.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r27552d2fa10d96f2810c50d16ad1fd1899e37796c81a0c5e7585a02d%40%3Cdev.rocketmq.apache.org%3E X_refsource_misc
https://lists.apache.org/thread.html/r2dfd5b331b46d3f90c4dd63a060e9f04300468293874bd7e41af7163%40%3Cissues.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r3765353ff434fd00d8fa5a44734b3625a06eeb2a3fb468da7dfae134%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r4639e821ef9ca6ca10887988f410a60261400a7766560e7a97a22efc%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r4b1886e82cc98ef38f582fef7d4ea722e3fcf46637cd4674926ba682%40%3Cissues.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r5c95eff679dfc642e9e4ab5ac6d202248a59cb1e9457cfbe8b729ac5%40%3Cissues.ambari.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r645408661a8df9158f49e337072df39838fa76da629a7e25a20928a6%40%3Cdev.rocketmq.apache.org%3E X_refsource_misc
https://lists.apache.org/thread.html/r6dac0e365d1b2df9a7ffca12b4195181ec14ff0abdf59e1fdb088ce5%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r712a6fce928e24e7b6ec30994a7e115a70f1f6e4cf2c2fbf0347ce46%40%3Ccommits.servicecomb.apache.org%3E X_refsource_misc
https://lists.apache.org/thread.html/r7361bfe84bde9d233f9800c3a96673e7bd81207549ced0236f07a29d%40%3Cissues.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r74f81f93a9b69140fe41e236afa7cbe8dfa75692e7ab31a468fddaa0%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r7d5e518088e2e778928b02bcd3be3b948b59acefe2f0ebb57ec2ebb0%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r8736185eb921022225a83e56d7285a217fd83f5524bd64a6ca3bf5cc%40%3Cissues.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r881fb5a95ab251106fed38f836257276feb026bfe01290e72ff91c2a%40%3Ccommits.servicecomb.apache.org%3E X_refsource_misc
https://lists.apache.org/thread.html/r8b496b1743d128e6861ee0ed3c3c48cc56c505b38f84fa5baf7ae33a%40%3Cdev.ambari.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r8cc37a60a5056351377ee5f1258f2a4fdd39822a257838ba6bcc1e88%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r9f13cccb214495e14648d2c9b8f2c6072fd5219e74502dd35ede81e1%40%3Cdev.ambari.apache.org%3E Mailing List
https://lists.apache.org/thread.html/r9fb1ee08cf337d16c3364feb0f35a072438c1a956afd7b77859aa090%40%3Cissues.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/ra996b56e1f5ab2fed235a8b91fa0cc3cf34c2e9fee290b7fa4380a0d%40%3Ccommits.servicecomb.apache.org%3E X_refsource_misc
https://lists.apache.org/thread.html/rab0de39839b4c208dcd73f01e12899dc453361935a816a784548e048%40%3Cissues.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/rb4d1fc078f086ec2e98b2693e8b358e58a6a4ef903ceed93a1ee2b18%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/rc05acaacad089613e9642f939b3a44f7199b5537493945c3e045287f%40%3Cdev.geode.apache.org%3E Mailing List
https://lists.apache.org/thread.html/rc9c7f96f08c8554225dba9050ea5e64bebc129d0d836303143fe3160%40%3Cdev.rocketmq.apache.org%3E Mailing List
https://lists.apache.org/thread.html/rdcaadaa9a68b31b7d093d76eacfaacf6c7a819f976b595c75ad2d4dc%40%3Cdev.geode.apache.org%3E Mailing List
https://lists.apache.org/thread.html/rded5291e25a4c4085a6d43cf262e479140198bf4eabb84986e0a1ef3%40%3Cdev.rocketmq.apache.org%3E X_refsource_misc
https://lists.apache.org/thread.html/reaa8a6674baf2724b1b88a621b0d72d9f7a6f5577c88759842c16eb6%40%3Ccommits.karaf.apache.org%3E Mailing List
https://lists.apache.org/thread.html/rf8dc72b974ee74f17bce661ea7d124e733a1f4c4f236354ac0cf48e8%40%3Ccommits.camel.apache.org%3E Mailing List
https://security.netapp.com/advisory/ntap-20210917-0006 Third Party Advisory
https://www.oracle.com/security-alerts/cpuapr2020.html Third Party Advisory
https://www.oracle.com/security-alerts/cpujan2021.html Third Party Advisory
https://www.oracle.com/security-alerts/cpujul2020.html Third Party Advisory
https://www.oracle.com/security-alerts/cpujul2022.html X_refsource_misc
https://www.oracle.com/security-alerts/cpuoct2020.html Third Party Advisory
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Vmware
Search vendor "Vmware"
Spring Framework
Search vendor "Vmware" for product "Spring Framework"
>= 5.0.0 < 5.0.16
Search vendor "Vmware" for product "Spring Framework" and version " >= 5.0.0 < 5.0.16"
-
Affected
Vmware
Search vendor "Vmware"
Spring Framework
Search vendor "Vmware" for product "Spring Framework"
>= 5.1.0 < 5.1.13
Search vendor "Vmware" for product "Spring Framework" and version " >= 5.1.0 < 5.1.13"
-
Affected
Vmware
Search vendor "Vmware"
Spring Framework
Search vendor "Vmware" for product "Spring Framework"
>= 5.2.0 < 5.2.3
Search vendor "Vmware" for product "Spring Framework" and version " >= 5.2.0 < 5.2.3"
-
Affected
Oracle
Search vendor "Oracle"
Application Testing Suite
Search vendor "Oracle" for product "Application Testing Suite"
13.3.0.1
Search vendor "Oracle" for product "Application Testing Suite" and version "13.3.0.1"
-
Affected
Oracle
Search vendor "Oracle"
Communications Billing And Revenue Management Elastic Charging Engine
Search vendor "Oracle" for product "Communications Billing And Revenue Management Elastic Charging Engine"
11.3
Search vendor "Oracle" for product "Communications Billing And Revenue Management Elastic Charging Engine" and version "11.3"
-
Affected
Oracle
Search vendor "Oracle"
Communications Billing And Revenue Management Elastic Charging Engine
Search vendor "Oracle" for product "Communications Billing And Revenue Management Elastic Charging Engine"
12.0
Search vendor "Oracle" for product "Communications Billing And Revenue Management Elastic Charging Engine" and version "12.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Cloud Native Core Policy
Search vendor "Oracle" for product "Communications Cloud Native Core Policy"
1.5.0
Search vendor "Oracle" for product "Communications Cloud Native Core Policy" and version "1.5.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Diameter Signaling Router
Search vendor "Oracle" for product "Communications Diameter Signaling Router"
>= 8.0.0 <= 8.2.2
Search vendor "Oracle" for product "Communications Diameter Signaling Router" and version " >= 8.0.0 <= 8.2.2"
-
Affected
Oracle
Search vendor "Oracle"
Communications Element Manager
Search vendor "Oracle" for product "Communications Element Manager"
8.1.1
Search vendor "Oracle" for product "Communications Element Manager" and version "8.1.1"
-
Affected
Oracle
Search vendor "Oracle"
Communications Element Manager
Search vendor "Oracle" for product "Communications Element Manager"
8.2.0
Search vendor "Oracle" for product "Communications Element Manager" and version "8.2.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Element Manager
Search vendor "Oracle" for product "Communications Element Manager"
8.2.1
Search vendor "Oracle" for product "Communications Element Manager" and version "8.2.1"
-
Affected
Oracle
Search vendor "Oracle"
Communications Policy Management
Search vendor "Oracle" for product "Communications Policy Management"
12.5.0
Search vendor "Oracle" for product "Communications Policy Management" and version "12.5.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Report Manager
Search vendor "Oracle" for product "Communications Session Report Manager"
8.1.1
Search vendor "Oracle" for product "Communications Session Report Manager" and version "8.1.1"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Report Manager
Search vendor "Oracle" for product "Communications Session Report Manager"
8.2.0
Search vendor "Oracle" for product "Communications Session Report Manager" and version "8.2.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Report Manager
Search vendor "Oracle" for product "Communications Session Report Manager"
8.2.1
Search vendor "Oracle" for product "Communications Session Report Manager" and version "8.2.1"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Route Manager
Search vendor "Oracle" for product "Communications Session Route Manager"
8.1.1
Search vendor "Oracle" for product "Communications Session Route Manager" and version "8.1.1"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Route Manager
Search vendor "Oracle" for product "Communications Session Route Manager"
8.2.0
Search vendor "Oracle" for product "Communications Session Route Manager" and version "8.2.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Route Manager
Search vendor "Oracle" for product "Communications Session Route Manager"
8.2.1
Search vendor "Oracle" for product "Communications Session Route Manager" and version "8.2.1"
-
Affected
Oracle
Search vendor "Oracle"
Enterprise Manager Base Platform
Search vendor "Oracle" for product "Enterprise Manager Base Platform"
13.2.1.0
Search vendor "Oracle" for product "Enterprise Manager Base Platform" and version "13.2.1.0"
-
Affected
Oracle
Search vendor "Oracle"
Financial Services Regulatory Reporting With Agilereporter
Search vendor "Oracle" for product "Financial Services Regulatory Reporting With Agilereporter"
8.0.9.2.0
Search vendor "Oracle" for product "Financial Services Regulatory Reporting With Agilereporter" and version "8.0.9.2.0"
-
Affected
Oracle
Search vendor "Oracle"
Flexcube Private Banking
Search vendor "Oracle" for product "Flexcube Private Banking"
12.0.0
Search vendor "Oracle" for product "Flexcube Private Banking" and version "12.0.0"
-
Affected
Oracle
Search vendor "Oracle"
Flexcube Private Banking
Search vendor "Oracle" for product "Flexcube Private Banking"
12.1.0
Search vendor "Oracle" for product "Flexcube Private Banking" and version "12.1.0"
-
Affected
Oracle
Search vendor "Oracle"
Healthcare Master Person Index
Search vendor "Oracle" for product "Healthcare Master Person Index"
4.0.2
Search vendor "Oracle" for product "Healthcare Master Person Index" and version "4.0.2"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Calculation Engine
Search vendor "Oracle" for product "Insurance Calculation Engine"
>= 11.0.0 <= 11.3.1
Search vendor "Oracle" for product "Insurance Calculation Engine" and version " >= 11.0.0 <= 11.3.1"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Policy Administration J2ee
Search vendor "Oracle" for product "Insurance Policy Administration J2ee"
10.2.0
Search vendor "Oracle" for product "Insurance Policy Administration J2ee" and version "10.2.0"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Policy Administration J2ee
Search vendor "Oracle" for product "Insurance Policy Administration J2ee"
10.2.4
Search vendor "Oracle" for product "Insurance Policy Administration J2ee" and version "10.2.4"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Policy Administration J2ee
Search vendor "Oracle" for product "Insurance Policy Administration J2ee"
11.0.2
Search vendor "Oracle" for product "Insurance Policy Administration J2ee" and version "11.0.2"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Policy Administration J2ee
Search vendor "Oracle" for product "Insurance Policy Administration J2ee"
11.1.0
Search vendor "Oracle" for product "Insurance Policy Administration J2ee" and version "11.1.0"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Policy Administration J2ee
Search vendor "Oracle" for product "Insurance Policy Administration J2ee"
11.2.0
Search vendor "Oracle" for product "Insurance Policy Administration J2ee" and version "11.2.0"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Policy Administration J2ee
Search vendor "Oracle" for product "Insurance Policy Administration J2ee"
11.2.2.0
Search vendor "Oracle" for product "Insurance Policy Administration J2ee" and version "11.2.2.0"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Rules Palette
Search vendor "Oracle" for product "Insurance Rules Palette"
10.2.0
Search vendor "Oracle" for product "Insurance Rules Palette" and version "10.2.0"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Rules Palette
Search vendor "Oracle" for product "Insurance Rules Palette"
10.2.4
Search vendor "Oracle" for product "Insurance Rules Palette" and version "10.2.4"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Rules Palette
Search vendor "Oracle" for product "Insurance Rules Palette"
11.0.2
Search vendor "Oracle" for product "Insurance Rules Palette" and version "11.0.2"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Rules Palette
Search vendor "Oracle" for product "Insurance Rules Palette"
11.1.0
Search vendor "Oracle" for product "Insurance Rules Palette" and version "11.1.0"
-
Affected
Oracle
Search vendor "Oracle"
Insurance Rules Palette
Search vendor "Oracle" for product "Insurance Rules Palette"
11.2.0
Search vendor "Oracle" for product "Insurance Rules Palette" and version "11.2.0"
-
Affected
Oracle
Search vendor "Oracle"
Mysql
Search vendor "Oracle" for product "Mysql"
>= 4.0.0 <= 4.0.12
Search vendor "Oracle" for product "Mysql" and version " >= 4.0.0 <= 4.0.12"
-
Affected
Oracle
Search vendor "Oracle"
Mysql
Search vendor "Oracle" for product "Mysql"
>= 8.0.0 <= 8.0.20
Search vendor "Oracle" for product "Mysql" and version " >= 8.0.0 <= 8.0.20"
-
Affected
Oracle
Search vendor "Oracle"
Rapid Planning
Search vendor "Oracle" for product "Rapid Planning"
12.1
Search vendor "Oracle" for product "Rapid Planning" and version "12.1"
-
Affected
Oracle
Search vendor "Oracle"
Rapid Planning
Search vendor "Oracle" for product "Rapid Planning"
12.2
Search vendor "Oracle" for product "Rapid Planning" and version "12.2"
-
Affected
Oracle
Search vendor "Oracle"
Retail Assortment Planning
Search vendor "Oracle" for product "Retail Assortment Planning"
15.0
Search vendor "Oracle" for product "Retail Assortment Planning" and version "15.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Assortment Planning
Search vendor "Oracle" for product "Retail Assortment Planning"
16.0
Search vendor "Oracle" for product "Retail Assortment Planning" and version "16.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Back Office
Search vendor "Oracle" for product "Retail Back Office"
14.1
Search vendor "Oracle" for product "Retail Back Office" and version "14.1"
-
Affected
Oracle
Search vendor "Oracle"
Retail Bulk Data Integration
Search vendor "Oracle" for product "Retail Bulk Data Integration"
16.0.3.0
Search vendor "Oracle" for product "Retail Bulk Data Integration" and version "16.0.3.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Central Office
Search vendor "Oracle" for product "Retail Central Office"
14.1
Search vendor "Oracle" for product "Retail Central Office" and version "14.1"
-
Affected
Oracle
Search vendor "Oracle"
Retail Financial Integration
Search vendor "Oracle" for product "Retail Financial Integration"
15.0
Search vendor "Oracle" for product "Retail Financial Integration" and version "15.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Financial Integration
Search vendor "Oracle" for product "Retail Financial Integration"
16.0
Search vendor "Oracle" for product "Retail Financial Integration" and version "16.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Integration Bus
Search vendor "Oracle" for product "Retail Integration Bus"
15.0.3
Search vendor "Oracle" for product "Retail Integration Bus" and version "15.0.3"
-
Affected
Oracle
Search vendor "Oracle"
Retail Integration Bus
Search vendor "Oracle" for product "Retail Integration Bus"
16.0.3
Search vendor "Oracle" for product "Retail Integration Bus" and version "16.0.3"
-
Affected
Oracle
Search vendor "Oracle"
Retail Order Broker
Search vendor "Oracle" for product "Retail Order Broker"
15.0
Search vendor "Oracle" for product "Retail Order Broker" and version "15.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Order Broker
Search vendor "Oracle" for product "Retail Order Broker"
16.0
Search vendor "Oracle" for product "Retail Order Broker" and version "16.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Point-of-service
Search vendor "Oracle" for product "Retail Point-of-service"
14.1
Search vendor "Oracle" for product "Retail Point-of-service" and version "14.1"
-
Affected
Oracle
Search vendor "Oracle"
Retail Predictive Application Server
Search vendor "Oracle" for product "Retail Predictive Application Server"
14.0.3
Search vendor "Oracle" for product "Retail Predictive Application Server" and version "14.0.3"
-
Affected
Oracle
Search vendor "Oracle"
Retail Predictive Application Server
Search vendor "Oracle" for product "Retail Predictive Application Server"
14.1.3.0
Search vendor "Oracle" for product "Retail Predictive Application Server" and version "14.1.3.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Predictive Application Server
Search vendor "Oracle" for product "Retail Predictive Application Server"
15.0.3
Search vendor "Oracle" for product "Retail Predictive Application Server" and version "15.0.3"
-
Affected
Oracle
Search vendor "Oracle"
Retail Predictive Application Server
Search vendor "Oracle" for product "Retail Predictive Application Server"
16.0.3.0
Search vendor "Oracle" for product "Retail Predictive Application Server" and version "16.0.3.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Returns Management
Search vendor "Oracle" for product "Retail Returns Management"
14.1
Search vendor "Oracle" for product "Retail Returns Management" and version "14.1"
-
Affected
Oracle
Search vendor "Oracle"
Retail Service Backbone
Search vendor "Oracle" for product "Retail Service Backbone"
15.0
Search vendor "Oracle" for product "Retail Service Backbone" and version "15.0"
-
Affected
Oracle
Search vendor "Oracle"
Retail Service Backbone
Search vendor "Oracle" for product "Retail Service Backbone"
16.0
Search vendor "Oracle" for product "Retail Service Backbone" and version "16.0"
-
Affected
Oracle
Search vendor "Oracle"
Siebel Engineering - Installer \& Deployment
Search vendor "Oracle" for product "Siebel Engineering - Installer \& Deployment"
<= 2.1.1
Search vendor "Oracle" for product "Siebel Engineering - Installer \& Deployment" and version " <= 2.1.1"
-
Affected
Oracle
Search vendor "Oracle"
Weblogic Server
Search vendor "Oracle" for product "Weblogic Server"
12.2.1.3.0
Search vendor "Oracle" for product "Weblogic Server" and version "12.2.1.3.0"
-
Affected
Oracle
Search vendor "Oracle"
Weblogic Server
Search vendor "Oracle" for product "Weblogic Server"
12.2.1.4.0
Search vendor "Oracle" for product "Weblogic Server" and version "12.2.1.4.0"
-
Affected
Netapp
Search vendor "Netapp"
Data Availability Services
Search vendor "Netapp" for product "Data Availability Services"
--
Affected
Netapp
Search vendor "Netapp"
Snapcenter
Search vendor "Netapp" for product "Snapcenter"
--
Affected