Vulnerabilities > Improper Access Control

DATE CVE VULNERABILITY TITLE RISK
2017-01-27 CVE-2016-8311 Improper Access Control vulnerability in Oracle Flexcube Universal Banking
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core).
network
low complexity
oracle CWE-284
6.5
2017-01-27 CVE-2016-8309 Improper Access Control vulnerability in Oracle Flexcube Investor Servicing
Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Core).
network
low complexity
oracle CWE-284
4.3
2017-01-27 CVE-2016-8307 Improper Access Control vulnerability in Oracle Flexcube Universal Banking
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core).
network
low complexity
oracle CWE-284
5.3
2017-01-27 CVE-2016-8304 Improper Access Control vulnerability in Oracle Flexcube Universal Banking
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core).
network
low complexity
oracle CWE-284
5.4
2017-01-27 CVE-2016-8300 Improper Access Control vulnerability in Oracle Flexcube Private Banking 12.0.1/2.0.1/2.2.0
Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services Applications (subcomponent: Product / Instrument Search).
network
high complexity
oracle CWE-284
5.3
2017-01-27 CVE-2016-8299 Improper Access Control vulnerability in Oracle Flexcube Universal Banking
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core).
network
low complexity
oracle CWE-284
6.3
2017-01-27 CVE-2016-8298 Improper Access Control vulnerability in Oracle Flexcube Private Banking 12.0.1/2.0.1/2.2.0
Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services Applications (subcomponent: Product / Instrument Search).
network
low complexity
oracle CWE-284
8.1
2017-01-27 CVE-2016-8297 Improper Access Control vulnerability in Oracle Flexcube Universal Banking
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core).
network
low complexity
oracle CWE-284
8.1
2017-01-27 CVE-2016-8282 Improper Access Control vulnerability in Oracle Flexcube Private Banking 12.0.1/2.0.1/2.2.0
Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services Applications (subcomponent: Product / Instrument Search).
network
low complexity
oracle CWE-284
6.1
2017-01-27 CVE-2016-1920 Improper Access Control vulnerability in Samsung Knox 1.0
Samsung KNOX 1.0.0 uses the shared certificate on Android, which allows local users to conduct man-in-the-middle attacks as demonstrated by installing a certificate and running a VPN service.
local
low complexity
samsung CWE-284
5.5