Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2017-04-25 CVE-2017-3434 Unspecified vulnerability in Oracle One-To-One Fulfillment 12.1.1/12.1.2/12.1.3
Vulnerability in the Oracle One-to-One Fulfillment component of Oracle E-Business Suite (subcomponent: Audience workbench).
network
low complexity
oracle
7.1
2017-04-25 CVE-2017-3356 Unspecified vulnerability in Oracle Marketing
Vulnerability in the Oracle Marketing component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle
7.1
2017-04-25 CVE-2017-3355 Unspecified vulnerability in Oracle Marketing
Vulnerability in the Oracle Marketing component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle
7.1
2017-04-25 CVE-2017-3347 Unspecified vulnerability in Oracle Marketing
Vulnerability in the Oracle Marketing component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle
7.1
2017-04-25 CVE-2017-3345 Unspecified vulnerability in Oracle Marketing
Vulnerability in the Oracle Marketing component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle
7.1
2017-04-25 CVE-2017-3342 Unspecified vulnerability in Oracle Marketing
Vulnerability in the Oracle Marketing component of Oracle E-Business Suite (subcomponent: User Interface).
network
low complexity
oracle
7.1
2017-04-25 CVE-2017-8057 Information Exposure vulnerability in Joomla Joomla!
In Joomla! 3.4.0 through 3.6.5 (fixed in 3.7.0), multiple files caused full path disclosures on systems with enabled error reporting.
network
low complexity
joomla CWE-200
5.3
2017-04-25 CVE-2017-7989 Unrestricted Upload of File with Dangerous Type vulnerability in Joomla Joomla!
In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate MIME type checks allowed low-privilege users to upload swf files even if they were explicitly forbidden.
network
low complexity
joomla CWE-434
6.5
2017-04-25 CVE-2017-7988 Unspecified vulnerability in Joomla Joomla!
In Joomla! 1.6.0 through 3.6.5 (fixed in 3.7.0), inadequate filtering of form contents allows overwriting the author of an article.
network
low complexity
joomla
5.3
2017-04-25 CVE-2017-7987 Cross-site Scripting vulnerability in Joomla Joomla!
In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate escaping of file and folder names leads to XSS vulnerabilities in the template manager component.
network
low complexity
joomla CWE-79
6.1