VDB
GCVE-110-NCSC-2026-79
GCVE-110-NCSC-2026-79
Advisory PublishedCVSS 7.5/10
Multiple vulnerabilities across Oracle products, including Utilities Application Framework, Fusion Middleware, and WebLogic Server, allow unauthenticated attackers to execute denial of service attacks, with CVSS scores of 7.5 and varying damage ratings.
Weaknesses (CWE)
CWE-20Improper Input ValidationCWE-208Observable Timing DiscrepancyCWE-835Loop with Unreachable Exit Condition ('Infinite Loop')CWE-295Improper Certificate ValidationCWE-197Numeric Truncation ErrorCWE-330Use of Insufficiently Random ValuesCWE-125Out-of-bounds ReadCWE-1333Inefficient Regular Expression ComplexityCWE-436Interpretation ConflictCWE-923Improper Restriction of Communication Channel to Intended EndpointsCWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')CWE-444Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')CWE-200Exposure of Sensitive Information to an Unauthorized ActorCWE-770Allocation of Resources Without Limits or ThrottlingCWE-940Improper Verification of Source of a Communication ChannelCWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')CWE-134Use of Externally-Controlled Format StringCWE-1321Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')CWE-78Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')CWE-190Integer Overflow or WraparoundCWE-674Uncontrolled RecursionCWE-201Insertion of Sensitive Information Into Sent DataCWE-184Incomplete List of Disallowed InputsCWE-288Authentication Bypass Using an Alternate Path or ChannelCWE-787Out-of-bounds WriteCWE-121Stack-based Buffer OverflowCWE-130Improper Handling of Length Parameter InconsistencyCWE-73External Control of File Name or Path
Risk Scores
CVSS 3.1
7.5/10
High · CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Siemens | vers:unknown/* | — | — |
Aliases
CVE-2024-29857CVE-2024-30171CVE-2024-30172CVE-2024-41996CVE-2025-12816CVE-2025-15284CVE-2025-27769CVE-2025-40943CVE-2025-55018CVE-2025-58751CVE-2025-58752CVE-2025-58754CVE-2025-62439CVE-2025-62522CVE-2025-64157CVE-2025-64718CVE-2025-64756CVE-2025-66030CVE-2025-66031CVE-2025-66035CVE-2025-66412CVE-2025-69277CVE-2025-6965CVE-2025-7783CVE-2025-9230CVE-2025-9232CVE-2025-9670CVE-2026-22610CVE-2026-24858CVE-2026-25569CVE-2026-25570CVE-2026-25571CVE-2026-25572CVE-2026-25573CVE-2026-25605
References
Browse GCVE Records
74,237 records in the GCVE database · Updated July 21, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.