{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-03T19:10:46.459","vulnerabilities":[{"cve":{"id":"CVE-2019-2904","sourceIdentifier":"secalert_us@oracle.com","published":"2019-10-16T18:15:27.560","lastModified":"2024-11-21T04:41:46.483","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in the Oracle JDeveloper and ADF product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 11.1.1.9.0, 12.1.3.0.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle JDeveloper and ADF. Successful attacks of this vulnerability can result in takeover of Oracle JDeveloper and ADF. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)."},{"lang":"es","value":"Una vulnerabilidad en el producto Oracle JDeveloper and ADF de Oracle Fusion Middleware (componente: ADF Faces). Las versiones compatibles que están afectadas son 11.1.1.9.0, 12.1.3.0.0 y 12.2.1.3.0. Una vulnerabilidad fácilmente explotable permite a un atacante no autenticado con acceso a la red por medio de HTTP comprometer a Oracle JDeveloper and ADF. Los ataques con éxito de esta vulnerabilidad pueden resultar en la toma de control de Oracle JDeveloper and ADF. CVSS 3.0 Puntuación Base 9.8 (Impactos de la Confidencialidad, Integridad y Disponibilidad). Vector CVSS: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)."}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV30":[{"source":"secalert_us@oracle.com","type":"Secondary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_testing_suite:12.5.0.3:*:*:*:*:*:*:*","matchCriteriaId":"17EA8B91-7634-4636-B647-1049BA7CA088"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_testing_suite:13.1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"5B4DF46F-DBCC-41F2-A260-F83A14838F23"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_testing_suite:13.2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"10F17843-32EA-4C31-B65C-F424447BEF7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_testing_suite:13.3.0.1:*:*:*:*:*:*:*","matchCriteriaId":"A125E817-F974-4509-872C-B71933F42AD1"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_enterprise_collections:2.7.0:*:*:*:*:*:*:*","matchCriteriaId":"CFB663EB-1E06-428B-BE2D-AECFF7F1A025"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_enterprise_collections:2.8.0:*:*:*:*:*:*:*","matchCriteriaId":"3753A492-B62D-4E4A-8D60-C1AC1F71419B"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_enterprise_originations:2.7.0:*:*:*:*:*:*:*","matchCriteriaId":"7AB8ABFD-C72C-4CBB-8872-9440A19154D6"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_enterprise_originations:2.8.0:*:*:*:*:*:*:*","matchCriteriaId":"3054FEBB-484B-4927-9D1C-2024772E8B3D"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_enterprise_product_manufacturing:2.7.0:*:*:*:*:*:*:*","matchCriteriaId":"5AED3C78-7D65-4F02-820D-B51BCE4022F9"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_enterprise_product_manufacturing:2.8.0:*:*:*:*:*:*:*","matchCriteriaId":"557A23A1-4762-4D29-A478-D1670C1847D3"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_platform:2.4.0:*:*:*:*:*:*:*","matchCriteriaId":"C2BEE49E-A5AA-42D3-B422-460454505480"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_platform:2.4.1:*:*:*:*:*:*:*","matchCriteriaId":"F4FF66F7-10C8-4A1C-910A-EF7D12A4284C"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_platform:2.5.0:*:*:*:*:*:*:*","matchCriteriaId":"35AD0C07-9688-4397-8D45-FBB88C0F0C11"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_platform:2.6.0:*:*:*:*:*:*:*","matchCriteriaId":"8972497F-6E24-45A9-9A18-EB0E842CB1D4"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_platform:2.6.1:*:*:*:*:*:*:*","matchCriteriaId":"400509A8-D6F2-432C-A2F1-AD5B8778D0D9"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_platform:2.6.2:*:*:*:*:*:*:*","matchCriteriaId":"132CE62A-FBFC-4001-81EC-35D81F73AF48"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_platform:2.7.0:*:*:*:*:*:*:*","matchCriteriaId":"282150FF-C945-4A3E-8A80-E8757A8907EA"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_platform:2.7.1:*:*:*:*:*:*:*","matchCriteriaId":"645AA3D1-C8B5-4CD2-8ACE-31541FA267F0"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:banking_platform:2.9.0:*:*:*:*:*:*:*","matchCriteriaId":"AB9FC9AB-1070-420F-870E-A5EC43A924A4"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:business_process_management_suite:12.2.1.3.0:*:*:*:*:*:*:*","matchCriteriaId":"E869C417-C0E6-4FC3-B406-45598A1D1906"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:business_process_management_suite:12.2.1.4.0:*:*:*:*:*:*:*","matchCriteriaId":"DFEFE2C0-7B98-44F9-B3AD-D6EC607E90DA"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:clinical:5.2:*:*:*:*:*:*:*","matchCriteriaId":"F60487A7-386A-4C86-9456-53D1F437CE0C"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:communications_diameter_signaling_router:*:*:*:*:*:*:*:*","versionStartIncluding":"8.0.0.0","versionEndIncluding":"8.4.0.5","matchCriteriaId":"12981AA7-BBF6-4158-8F7D-9DD3880FDCC1"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:communications_network_integrity:*:*:*:*:*:*:*:*","versionStartIncluding":"7.3.2","versionEndIncluding":"7.3.6","matchCriteriaId":"ABD748C9-24F6-4739-9772-208B98616EE2"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:communications_service_broker:6.0:*:*:*:*:*:*:*","matchCriteriaId":"373C4024-679F-4C37-B408-0FB0D7FD845F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:communications_service_broker:6.1:*:*:*:*:*:*:*","matchCriteriaId":"7B1B6C73-F0DC-48AA-BD31-FD3FAEC22F58"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:communications_services_gatekeeper:6.0:*:*:*:*:*:*:*","matchCriteriaId":"BA4E8A1E-FBB5-4EAC-9A7F-6FE95A1B5F60"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:communications_services_gatekeeper:6.1:*:*:*:*:*:*:*","matchCriteriaId":"F3287751-9F54-4806-81D2-E28A42DF1407"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:enterprise_repository:11.1.1.7.0:*:*:*:*:*:*:*","matchCriteriaId":"69300B13-8C0F-4433-A6E8-B2CE32C4723D"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:financial_services_lending_and_leasing:*:*:*:*:*:*:*:*","versionStartIncluding":"14.1.0","versionEndIncluding":"14.2.0","matchCriteriaId":"FCDA89CD-FE10-47AA-9F64-F4BC93E44755"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:financial_services_lending_and_leasing:12.5.0:*:*:*:*:*:*:*","matchCriteriaId":"317CA916-61F3-4E24-B42F-610A1C88A5BA"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:financial_services_revenue_management_and_billing_analytics:2.6:*:*:*:*:*:*:*","matchCriteriaId":"A51A10EB-10A9-48EE-9B24-AEE2ABACE9C5"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:financial_services_revenue_management_and_billing_analytics:2.7:*:*:*:*:*:*:*","matchCriteriaId":"4CCE1968-016C-43C1-9EE1-FD9F978B688F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:financial_services_revenue_management_and_billing_analytics:2.8:*:*:*:*:*:*:*","matchCriteriaId":"5B5DBF4C-84BB-4537-BD8D-E10C5A4B69F4"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:flexcube_private_banking:12.0.0:*:*:*:*:*:*:*","matchCriteriaId":"6762F207-93C7-4363-B2F9-7A7C6F8AF993"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:flexcube_private_banking:12.1.0:*:*:*:*:*:*:*","matchCriteriaId":"1B74B912-152D-4F38-9FC1-741D6D0B27FC"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:health_sciences_data_management_workbench:2.4:*:*:*:*:*:*:*","matchCriteriaId":"271745B7-203F-4025-ACF0-C7CA40EE1643"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:health_sciences_data_management_workbench:2.5:*:*:*:*:*:*:*","matchCriteriaId":"A6C07C54-1A10-4063-87F1-E4A371695149"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:hyperion_planning:11.1.2.4:*:*:*:*:*:*:*","matchCriteriaId":"86045AB3-7CCA-49D0-B6FA-DA57A55248DE"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:rapid_planning:12.1.3:*:*:*:*:*:*:*","matchCriteriaId":"10578046-1907-4B2B-B8DE-80B3DE6AA476"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_assortment_planning:15.0.3.0:*:*:*:*:*:*:*","matchCriteriaId":"44357172-4035-4D57-9C83-D80BDDE8E8C7"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_assortment_planning:16.0.3.0:*:*:*:*:*:*:*","matchCriteriaId":"CDDD1BFF-9B0D-45DA-86DC-05CF829107FB"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_clearance_optimization_engine:13.4:*:*:*:*:*:*:*","matchCriteriaId":"B13EC6F1-1EB7-4A71-8298-A9140C0F6EBB"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_clearance_optimization_engine:14.0.3:*:*:*:*:*:*:*","matchCriteriaId":"4D31A422-0B1D-415E-A551-26B8449017DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_clearance_optimization_engine:14.0.5:*:*:*:*:*:*:*","matchCriteriaId":"FE91D517-D85D-4A8D-90DC-4561BBF8670E"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_markdown_optimization:13.4:*:*:*:*:*:*:*","matchCriteriaId":"32E89B1F-7746-47A6-93A2-E7EB69A85EA1"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_sales_audit:15.0.3:*:*:*:*:*:*:*","matchCriteriaId":"12AFC92F-E46B-4382-9302-26F27B79723C"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:retail_sales_audit:16.0.2:*:*:*:*:*:*:*","matchCriteriaId":"B5AA4401-E672-4E34-A7DB-5F8F93C3A4F9"}]}]}],"references":[{"url":"http://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html","source":"secalert_us@oracle.com","tags":["Patch","Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpuapr2020.html","source":"secalert_us@oracle.com","tags":["Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpuapr2021.html","source":"secalert_us@oracle.com","tags":["Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpujan2020.html","source":"secalert_us@oracle.com","tags":["Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpujul2020.html","source":"secalert_us@oracle.com","tags":["Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpuoct2020.html","source":"secalert_us@oracle.com","tags":["Vendor Advisory"]},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-19-1024/","source":"secalert_us@oracle.com","tags":["Third Party Advisory","VDB Entry"]},{"url":"http://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpuapr2020.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpuapr2021.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpujan2020.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpujul2020.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpuoct2020.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-19-1024/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]}]}}]}