📦 Communications Cloud Native Core Automated Test Suite

by Oracle

🔍 What is Communications Cloud Native Core Automated Test Suite?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-22963

CRITICAL CVSS 9.8 Apr 1, 2022

This vulnerability allows remote attackers to execute arbitrary code on systems running vulnerable versions of Spring Cloud Function. Attackers can craft malicious SpEL expressions in routing function...

CVE-2021-29921

CRITICAL CVSS 9.8 May 6, 2021

The Python ipaddress library incorrectly interprets IP addresses with leading zeros in octets, treating them as octal numbers instead of decimal. This allows attackers to bypass IP-based access contro...

CVE-2021-39150

HIGH CVSS 8.5 Aug 23, 2021

CVE-2021-39150 is a deserialization vulnerability in XStream library that allows remote attackers to access internal resources by manipulating XML input streams. Only affects users who rely on XStream...

CVE-2021-39154

HIGH CVSS 8.5 Aug 23, 2021

CVE-2021-39154 is a remote code execution vulnerability in XStream library that allows attackers to execute arbitrary code by manipulating XML input streams. Only users who haven't implemented XStream...

CVE-2021-39144

HIGH CVSS 8.5 Aug 23, 2021

CVE-2021-39144 is a remote code execution vulnerability in XStream library versions before 1.4.18. Attackers with sufficient privileges can execute arbitrary commands on the host by manipulating XML i...

CVE-2021-39146

HIGH CVSS 8.5 Aug 23, 2021

CVE-2021-39146 is a remote code execution vulnerability in XStream library that allows attackers to execute arbitrary code by manipulating XML input streams. Only users who haven't implemented XStream...

CVE-2021-39148

HIGH CVSS 8.5 Aug 23, 2021

CVE-2021-39148 is a remote code execution vulnerability in XStream library that allows attackers to execute arbitrary code by manipulating XML input streams. Only users who haven't implemented XStream...

CVE-2021-39151

HIGH CVSS 8.5 Aug 23, 2021

CVE-2021-39151 is a remote code execution vulnerability in XStream library versions before 1.4.18. Attackers can manipulate XML input to execute arbitrary code on affected systems. Only users who have...

CVE-2021-39139

HIGH CVSS 8.5 Aug 23, 2021

CVE-2021-39139 is a remote code execution vulnerability in XStream library that allows attackers to execute arbitrary code by manipulating XML input streams. Users are affected if they use XStream out...

CVE-2021-35515

HIGH CVSS 7.5 Jul 13, 2021

CVE-2021-35515 is a denial-of-service vulnerability in Apache Commons Compress's 7Z archive handling. When processing a specially crafted 7Z file, the codec list construction can enter an infinite loo...