Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2011-10-18 CVE-2011-2304 Remote vulnerability in Oracle Solaris 10
Unspecified vulnerability in Oracle Solaris 10 allows remote attackers to affect confidentiality, related to Network Services Library (libnsl).
network
oracle
4.3
2011-10-18 CVE-2011-2303 Remote Oracle Application Object Library vulnerability in Oracle E-Business Suite
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.2, and 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Attachments / File Upload.
network
oracle
3.5
2011-10-18 CVE-2011-2302 Remote Oracle Application Object Library vulnerability in Oracle E-Business Suite
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Single Sign On.
network
oracle
4.3
2011-10-18 CVE-2011-2301 Unspecified vulnerability in Oracle Database Server
Unspecified vulnerability in the Oracle Text component in Oracle Database Server 10.1.0.5, 10.2.0.3, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect confidentiality, integrity, and availability, related to CTXSYS.DRVDISP.
network
oracle
8.5
2011-10-18 CVE-2011-2292 Local Solaris vulnerability in Oracle Solaris 11Express/9
Unspecified vulnerability in Oracle Solaris 9 and 11 Express allows local users to affect confidentiality and integrity via unknown vectors related to xscreensaver.
local
high complexity
oracle
2.4
2011-10-18 CVE-2011-2286 Remote vulnerability in Oracle Sun Products Suite
Unspecified vulnerability in Oracle Solaris 10 and 11 Express allows remote authenticated users to affect availability, related to ZFS.
network
high complexity
oracle
2.1
2011-10-18 CVE-2011-2255 Remote Oracle WebLogic Portal vulnerability in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle WebLogic Portal component in Oracle Fusion Middleware 9.2.3.0, 10.0.1.0, 10.2.1.0, and 10.3.2.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
oracle
6.8
2011-10-18 CVE-2011-2237 Remote Oracle Web Services Manager vulnerability in Oracle Fusion Middleware 10.1.3.5/10.1.3.5.1
Unspecified vulnerability in the Oracle Web Services Manager component in Oracle Fusion Middleware 10.1.3.5.0 and 10.1.3.5.1 allows remote authenticated users to affect integrity, related to WSM Console, a different vulnerability than CVE-2011-3523.
network
oracle
3.5
2011-10-18 CVE-2011-4062 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Freebsd
Buffer overflow in the kernel in FreeBSD 7.3 through 9.0-RC1 allows local users to cause a denial of service (panic) or possibly gain privileges via a bind system call with a long pathname for a UNIX socket.
local
low complexity
freebsd CWE-119
7.2
2011-10-18 CVE-2011-4061 Unspecified vulnerability in IBM DB2 and Tivoli Monitoring FOR Databases
Multiple untrusted search path vulnerabilities in (1) db2rspgn and (2) kbbacf1 in IBM DB2 Express Edition 9.7, as used in the IBM Tivoli Monitoring for Databases: DB2 Agent, allow local users to gain privileges via a Trojan horse libkbb.so in the current working directory, related to the DT_RPATH ELF header.
local
ibm
6.9