CVE-2017-12617
HIGH
8,1
Source: [email protected]
Attack Vector: network
Attack Complexity: high
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high
MEDIUM
6,8
Source: [email protected]
Access Vector: network
Access Complexity: medium
Authentication: none
Confidentiality: partial
Integrity: partial
Availability: partial
Description
AI Translation Available
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and 7.0.0 to 7.0.81 with HTTP PUTs enabled (e.g. via setting the readonly initialisation parameter of the Default servlet to false) it was possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be executed by the server.
EPSS (Exploit Prediction Scoring System)
Trend Analysis
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score
0,9436
Percentile
1,0th
Updated
EPSS Score Trend (Last 90 Days)
434
Unrestricted Upload of File with Dangerous Type
DraftCommon Consequences
Security Scopes Affected:
Integrity
Confidentiality
Availability
Potential Impacts:
Execute Unauthorized Code Or Commands
Applicable Platforms
Languages:
ASP.NET, Not Language-Specific, PHP
Technologies:
Web Server
Exploit
Apache Tomcat < 9.0.1 (Beta) / < 8.5.23 …
VerifiedApache Tomcat < 9.0.1 (Beta) / < 8.5.23 / < 8.0.47 / < 7.0.8 - JSP Upload Bypass / Remote Code Execution (2)
View Exploit Code →
Exploit
Tomcat - Remote Code Execution via JSP Upload …
Verified Metasploit Framework (MSF)Tomcat - Remote Code Execution via JSP Upload Bypass (Metasploit)
View Exploit Code →
Application
Retail Order Management System by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_order_management_system:4.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Price Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_price_management:13.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Fuse by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:a:redhat:fuse:1.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Jboss Enterprise Web Server Text-Only Advisories by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:a:redhat:jboss_enterprise_web_server_text-only_advisories:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Store Inventory Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_store_inventory_management:13.2.9:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Active Iq Unified Manager by Netapp
Version Range Affected
From
9.5
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:netapp:active_iq_unified_manager:*:*:*:*:*:vmware_vsphere:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Store Inventory Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_store_inventory_management:14.0.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Returns Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_returns_management:14.0.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Ibm Z Systems Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.5_s390x:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Store Inventory Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_store_inventory_management:13.0.7:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Debian Linux by Debian
CPE Identifier
View Detailed Analysis
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Server Tus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Hospitality Guest Access by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:hospitality_guest_access:4.2.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Webcenter Sites by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:webcenter_sites:11.1.1.8.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Insights by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_insights:14.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Ibm Z Systems Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.6_s390x:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Ibm Z Systems by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:7.0_s390x:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Eftlink by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_eftlink:15.0.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Insights by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_insights:16.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Health Sciences Empirica Inspections by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:health_sciences_empirica_inspections:1.0.1.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Tomcat by Apache
Version Range Affected
From
8.0
(inclusive)
To
8.0.47
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Desktop by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Xstore Point Of Service by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_xstore_point_of_service:15.0.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Order Broker by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_order_broker:16.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Big Endian Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.6_ppc64:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Little Endian Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.5_ppc64le:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Oncommand Shift by Netapp
CPE Identifier
View Detailed Analysis
cpe:2.3:a:netapp:oncommand_shift:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Transportation Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:transportation_management:6.3.5:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Little Endian Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.7_ppc64le:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Invoice Matching by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_invoice_matching:14.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Big Endian Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.5_ppc64:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Eus Compute Node by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_eus_compute_node:7.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Transportation Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:transportation_management:6.3.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Returns Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_returns_management:2.3.8:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Financial Services Analytical Applications Infrastructure by Oracle
Version Range Affected
From
7.3.3.0.0
(inclusive)
To
7.3.5.3.0
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Invoice Matching by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_invoice_matching:13.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Advanced Inventory Planning by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_advanced_inventory_planning:15.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Invoice Matching by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_invoice_matching:12.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Server by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Mysql Enterprise Monitor by Oracle
Version Range Affected
From
3.4.0
(inclusive)
To
3.4.4.4226
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:mysql_enterprise_monitor:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Store Inventory Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_store_inventory_management:13.1.9:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Xstore Point Of Service by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_xstore_point_of_service:7.1.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Eus Compute Node by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_eus_compute_node:7.5:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Advanced Inventory Planning by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_advanced_inventory_planning:14.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Oncommand Workflow Automation by Netapp
CPE Identifier
View Detailed Analysis
cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Central Office by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_central_office:14.1.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Price Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_price_management:14.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Invoice Matching by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_invoice_matching:13.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Point-Of-Service by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_point-of-service:14.0.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Insights by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_insights:14.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Element by Netapp
CPE Identifier
View Detailed Analysis
cpe:2.3:o:netapp:element:-:*:*:*:*:vcenter_server:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Management Pack by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:management_pack:11.2.1.0.13:*:*:*:*:goldengate:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Communications Instant Messaging Server by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:communications_instant_messaging_server:10.0.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Mysql Enterprise Monitor by Oracle
Version Range Affected
From
4.0.0
(inclusive)
To
4.0.0.5135
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:mysql_enterprise_monitor:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Fmw Platform by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:fmw_platform:12.2.1.2.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Order Management System by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_order_management_system:5.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Jboss Enterprise Web Server by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:a:redhat:jboss_enterprise_web_server:2.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Invoice Matching by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_invoice_matching:14.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Big Endian by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian:6.0_ppc64:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Eus Compute Node by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_eus_compute_node:7.7:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Store Inventory Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_store_inventory_management:14.1.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Micros Retail Xbri Loss Prevention by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:micros_retail_xbri_loss_prevention:10.6.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Server Aus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Central Office by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_central_office:14.0.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Order Broker by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_order_broker:5.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Invoice Matching by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_invoice_matching:15.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Micros Retail Xbri Loss Prevention by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:micros_retail_xbri_loss_prevention:10.0.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Ubuntu Linux by Canonical
CPE Identifier
View Detailed Analysis
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Invoice Matching by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_invoice_matching:16.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Oncommand Balance by Netapp
CPE Identifier
View Detailed Analysis
cpe:2.3:a:netapp:oncommand_balance:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Endeca Information Discovery Integrator by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:endeca_information_discovery_integrator:3.2.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Price Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_price_management:15.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Big Endian Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.7_ppc64:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Enterprise Manager For Mysql Database by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:enterprise_manager_for_mysql_database:12.1.0.4.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Tomcat by Apache
Version Range Affected
From
9.0.0
(inclusive)
To
9.0.1
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Workstation by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Instantis Enterprisetrack by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:instantis_enterprisetrack:17.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Transportation Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:transportation_management:6.3.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Invoice Matching by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_invoice_matching:13.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Price Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_price_management:14.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Returns Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_returns_management:2.4.9:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Xstore Point Of Service by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_xstore_point_of_service:7.0.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Store Inventory Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_store_inventory_management:16.0.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Endeca Information Discovery Integrator by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:endeca_information_discovery_integrator:3.1.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Big Endian by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian:7.0_ppc64:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Ubuntu Linux by Canonical
CPE Identifier
View Detailed Analysis
cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Jboss Enterprise Web Server by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:a:redhat:jboss_enterprise_web_server:3.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Micros Retail Xbri Loss Prevention by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:micros_retail_xbri_loss_prevention:10.5.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Ubuntu Linux by Canonical
CPE Identifier
View Detailed Analysis
cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Back Office by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_back_office:14.1.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Eus Compute Node by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_eus_compute_node:7.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Financial Services Analytical Applications Infrastructure by Oracle
Version Range Affected
From
8.0.0.0.0
(inclusive)
To
8.0.9.0.0
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Micros Lucas by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:micros_lucas:2.9.5:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Insights by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_insights:15.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Big Endian Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.4_ppc64:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Server by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Fmw Platform by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:fmw_platform:12.2.1.3.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Point-Of-Service by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_point-of-service:14.1.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Eftlink by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_eftlink:16.0.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Transportation Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:transportation_management:6.3.7:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Tomcat by Apache
Version Range Affected
From
7.0.0
(inclusive)
To
7.0.82
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Transportation Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:transportation_management:6.3.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Workload Manager by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:workload_manager:12.2.0.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Jboss Enterprise Application Platform by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Jboss Enterprise Application Platform by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.4.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Ubuntu Linux by Canonical
CPE Identifier
View Detailed Analysis
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:esm:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Server Aus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Little Endian by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:7.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Returns Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_returns_management:14.1.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Server Tus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Xstore Point Of Service by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_xstore_point_of_service:6.0.11:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Ibm Z Systems Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.4_s390x:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Instantis Enterprisetrack by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:instantis_enterprisetrack:17.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Order Management System by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_order_management_system:4.7:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Eftlink by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_eftlink:1.1.124:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Active Iq Unified Manager by Netapp
Version Range Affected
From
7.3
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:netapp:active_iq_unified_manager:*:*:*:*:*:windows:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Snapcenter by Netapp
CPE Identifier
View Detailed Analysis
cpe:2.3:a:netapp:snapcenter:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Transportation Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:transportation_management:6.3.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Price Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_price_management:13.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Micros Retail Xbri Loss Prevention by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:micros_retail_xbri_loss_prevention:10.8.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Order Broker by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_order_broker:5.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Store Inventory Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_store_inventory_management:15.0.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Agile Plm by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:agile_plm:9.3.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Ibm Z Systems by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:6.0_s390x:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Agile Plm by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:agile_plm:9.3.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Agile Plm by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:agile_plm:9.3.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Server Tus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Tuxedo System And Applications Monitor by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:tuxedo_system_and_applications_monitor:12.1.3.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Advanced Inventory Planning by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_advanced_inventory_planning:13.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Server Aus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Order Management System by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_order_management_system:4.5:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Convenience And Fuel Pos Software by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_convenience_and_fuel_pos_software:2.1.132:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Hospitality Guest Access by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:hospitality_guest_access:4.2.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Workstation by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Transportation Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:transportation_management:6.3.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Little Endian Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.4_ppc64le:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Order Broker by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_order_broker:5.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Agile Plm by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:agile_plm:9.3.5:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Desktop by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Order Broker by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_order_broker:15.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Micros Retail Xbri Loss Prevention by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:micros_retail_xbri_loss_prevention:10.7.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Tomcat by Apache
Version Range Affected
From
8.5.0
(inclusive)
To
8.5.23
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Price Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_price_management:16.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Oncommand Insight by Netapp
CPE Identifier
View Detailed Analysis
cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Store Inventory Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_store_inventory_management:12.0.12:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Price Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_price_management:13.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Power Little Endian Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.6_ppc64le:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Micros Retail Xbri Loss Prevention by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:micros_retail_xbri_loss_prevention:10.8.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Price Management by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_price_management:12.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Back Office by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_back_office:14.0.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Retail Advanced Inventory Planning by Oracle
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:retail_advanced_inventory_planning:13.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Mysql Enterprise Monitor by Oracle
Version Range Affected
To
3.3.6.3293
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:a:oracle:mysql_enterprise_monitor:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Enterprise Linux For Ibm Z Systems Eus by Redhat
CPE Identifier
View Detailed Analysis
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.7_s390x:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017…
https://access.redhat.com/errata/RHSA-2017:3080
https://access.redhat.com/errata/RHSA-2017:3081
https://access.redhat.com/errata/RHSA-2017:3113
https://access.redhat.com/errata/RHSA-2017:3114
https://access.redhat.com/errata/RHSA-2018:0268
https://access.redhat.com/errata/RHSA-2018:0269
https://access.redhat.com/errata/RHSA-2018:0270
https://access.redhat.com/errata/RHSA-2018:0271
https://access.redhat.com/errata/RHSA-2018:0275
https://access.redhat.com/errata/RHSA-2018:0465
https://access.redhat.com/errata/RHSA-2018:0466
https://access.redhat.com/errata/RHSA-2018:2939
https://lists.apache.org/thread.html/1dd0a59c1295cc08ce4c9e7edae5ad2268acc9ba55…
https://lists.apache.org/thread.html/343558d982879bf88ec20dbf707f8c11255f8e219e…
https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3…
https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f…
https://lists.apache.org/thread.html/3fd341a604c4e9eab39e7eaabbbac39c30101a022a…
https://lists.apache.org/thread.html/5c0e00fd31efc11e147bf99d0f03c00a734447d3b1…
https://lists.apache.org/thread.html/6af47120905aa7d8fe12f42e8ff2284fb338ba141d…
https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d8…
https://lists.apache.org/thread.html/88855876c33f2f9c532ffb75bfee570ccf0b17ffa7…
https://lists.apache.org/thread.html/b5e3f51d28cd5d9b1809f56594f2cf63dcd6a90429…
https://lists.apache.org/thread.html/e85e83e9954f169bbb77b44baae5a33d8de878df55…
https://lists.apache.org/thread.html/eb6efa8d59c45a7a9eff94c4b925467d3b3fec8ba7…
https://lists.apache.org/thread.html/r3bbb800a816d0a51eccc5a228c58736960a9fffaf…
https://lists.apache.org/thread.html/r48c1444845fe15a823e1374674bfc297d5008a545…
https://lists.apache.org/thread.html/r6ccee4e849bc77df0840c7f853f6bd09d426f6741…
https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855…
https://lists.apache.org/thread.html/raba0fabaf4d56d4325ab2aca8814f0b30a237ab83…
https://lists.debian.org/debian-lts-announce/2017/11/msg00009.html
https://security.netapp.com/advisory/ntap-20171018-0002/
https://security.netapp.com/advisory/ntap-20180117-0002/
https://support.f5.com/csp/article/K53173544
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hp…
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hp…
https://usn.ubuntu.com/3665-1/
https://www.exploit-db.com/exploits/42966/
https://www.exploit-db.com/exploits/43008/
https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html
http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html
http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html
http://www.securityfocus.com/bid/100954
http://www.securitytracker.com/id/1039552
https://access.redhat.com/errata/RHSA-2017:3080
https://access.redhat.com/errata/RHSA-2017:3081
https://access.redhat.com/errata/RHSA-2017:3113
https://access.redhat.com/errata/RHSA-2017:3114
https://access.redhat.com/errata/RHSA-2018:0268
https://access.redhat.com/errata/RHSA-2018:0269
https://access.redhat.com/errata/RHSA-2018:0270
https://access.redhat.com/errata/RHSA-2018:0271
https://access.redhat.com/errata/RHSA-2018:0275
https://access.redhat.com/errata/RHSA-2018:0465
https://access.redhat.com/errata/RHSA-2018:0466
https://access.redhat.com/errata/RHSA-2018:2939
https://lists.apache.org/thread.html/1dd0a59c1295cc08ce4c9e7edae5ad2268acc9ba55…
https://lists.apache.org/thread.html/343558d982879bf88ec20dbf707f8c11255f8e219e…
https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3…
https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f…
https://lists.apache.org/thread.html/3fd341a604c4e9eab39e7eaabbbac39c30101a022a…
https://lists.apache.org/thread.html/5c0e00fd31efc11e147bf99d0f03c00a734447d3b1…
https://lists.apache.org/thread.html/6af47120905aa7d8fe12f42e8ff2284fb338ba141d…
https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d8…
https://lists.apache.org/thread.html/88855876c33f2f9c532ffb75bfee570ccf0b17ffa7…
https://lists.apache.org/thread.html/b5e3f51d28cd5d9b1809f56594f2cf63dcd6a90429…
https://lists.apache.org/thread.html/e85e83e9954f169bbb77b44baae5a33d8de878df55…
https://lists.apache.org/thread.html/eb6efa8d59c45a7a9eff94c4b925467d3b3fec8ba7…
https://lists.apache.org/thread.html/r3bbb800a816d0a51eccc5a228c58736960a9fffaf…
https://lists.apache.org/thread.html/r48c1444845fe15a823e1374674bfc297d5008a545…
https://lists.apache.org/thread.html/r6ccee4e849bc77df0840c7f853f6bd09d426f6741…
https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855…
https://lists.apache.org/thread.html/raba0fabaf4d56d4325ab2aca8814f0b30a237ab83…
https://lists.debian.org/debian-lts-announce/2017/11/msg00009.html
https://security.netapp.com/advisory/ntap-20171018-0002/
https://security.netapp.com/advisory/ntap-20180117-0002/
https://support.f5.com/csp/article/K53173544
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hp…
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hp…
https://usn.ubuntu.com/3665-1/
https://www.exploit-db.com/exploits/42966/
https://www.exploit-db.com/exploits/43008/
https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html
http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html
http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html
http://www.securityfocus.com/bid/100954
http://www.securitytracker.com/id/1039552