Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2016-10-25 CVE-2016-5500 Information Exposure vulnerability in Oracle Discoverer 11.1.1.7.0
Unspecified vulnerability in the Oracle Discoverer component in Oracle Fusion Middleware 11.1.1.7.0 allows remote attackers to affect confidentiality via vectors related to Viewer.
network
low complexity
oracle CWE-200
7.5
2016-10-25 CVE-2016-5498 Information Exposure vulnerability in Oracle Database Server 11.2.0.4/12.1.0.2
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows local users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2016-5499.
local
low complexity
oracle CWE-200
3.3
2016-10-25 CVE-2016-5481 Information Exposure vulnerability in Oracle SUN ZFS Storage Appliance KIT Ak2013
Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows remote attackers to affect confidentiality via vectors related to Core Services.
network
high complexity
oracle CWE-200
3.7
2016-10-25 CVE-2016-5479 Information Exposure vulnerability in Oracle Flexcube Universal Banking 11.3.0/11.4.0/12.0.1
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.3.0, 11.4.0, and 12.0.1 allows remote authenticated users to affect confidentiality via vectors related to INFRA.
network
low complexity
oracle CWE-200
4.3
2016-10-25 CVE-2016-3562 Information Exposure vulnerability in Oracle Database Server 11.2.0.4/12.1.0.2
Unspecified vulnerability in the RDBMS Security and SQL*Plus components in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows remote administrators to affect confidentiality via vectors related to DBA.
network
low complexity
oracle CWE-200
2.4
2016-10-25 CVE-2016-3473 Information Exposure vulnerability in Oracle Business Intelligence Publisher 11.1.1.7.0/11.1.1.9.0/12.2.1.0.0
Unspecified vulnerability in the BI Publisher (formerly XML Publisher) component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, and 12.2.1.0.0 allows remote authenticated users to affect confidentiality via unknown vectors.
network
low complexity
oracle CWE-200
7.7
2016-10-25 CVE-2016-1000214 Information Exposure vulnerability in Ruckus Wireless H500
Ruckus Wireless H500 web management interface authentication bypass
network
low complexity
ruckus CWE-200
5.3
2016-10-22 CVE-2016-0377 Information Exposure vulnerability in IBM Websphere Application Server
The Administrative Console in IBM WebSphere Application Server (WAS) 7.x before 7.0.0.43, 8.0.x before 8.0.0.13, and 8.5.x before 8.5.5.10 mishandles CSRFtoken cookies, which allows remote authenticated users to obtain sensitive information via unspecified vectors.
network
low complexity
ibm CWE-200
4.3
2016-10-22 CVE-2016-0247 Information Exposure vulnerability in IBM Security Guardium
IBM Security Guardium 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows local users to obtain sensitive cleartext information via unspecified vectors, as demonstrated by password information.
local
low complexity
ibm CWE-200
7.8
2016-10-22 CVE-2016-0242 Information Exposure vulnerability in IBM Security Guardium 10.0/10.01/10.1
IBM Security Guardium 10.x through 10.1 before p100 allows remote authenticated users to obtain sensitive information by reading an Application Error message.
network
low complexity
ibm CWE-200
4.3