Vulnerabilities (CVE)

Filtered by vendor Oracle
Filtered by product Essbase Analytic Provider Services
Angry Yack Logo
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-2435 1 Oracle 1 Essbase Analytic Provider Services 2024-11-21 5.8 MEDIUM 8.1 HIGH
Vulnerability in the Essbase Analytic Provider Services product of Oracle Essbase (component: JAPI). The supported version that is affected is 11.1.2.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Essbase Analytic Provider Services. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critic ...

Show More

CVE-2021-2433 1 Oracle 1 Essbase Analytic Provider Services 2024-11-21 5.0 MEDIUM 7.5 HIGH
Vulnerability in the Essbase Analytic Provider Services product of Oracle Essbase (component: Web Services). Supported versions that are affected are 11.1.2.4 and 21.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Essbase Analytic Provider Services. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Essbase Analytic Provider Services. CVSS 3.1 B ...

Show More

CVE-2021-2244 1 Oracle 2 Essbase Analytic Provider Services, Hyperion Analytic Provider Services 2024-11-21 7.5 HIGH 10.0 CRITICAL
Vulnerability in the Hyperion Analytic Provider Services product of Oracle Hyperion (component: JAPI) and Essbase Analytic Provider Services product of Oracle Essbase (component: JAPI). Supported versions that are affected are Hyperion Analytic Provider Services 11.1.2.4 and 12.2.1.4, and Essbase Analytic Provider Services 21.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Hyperion Analytic Provider Services. Successful attacks requi ...

Show More