Vulnerabilities > Improper Access Control

DATE CVE VULNERABILITY TITLE RISK
2016-10-25 CVE-2016-5576 Improper Access Control vulnerability in Oracle Solaris 11.3
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel Zones.
local
low complexity
oracle CWE-284
5.5
2016-10-25 CVE-2016-5575 Improper Access Control vulnerability in Oracle Common Applications
Unspecified vulnerability in the Oracle Common Applications Calendar component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote attackers to affect confidentiality via vectors related to Resources Module.
network
low complexity
oracle CWE-284
5.3
2016-10-25 CVE-2016-5574 Improper Access Control vulnerability in Oracle Outside in Technology
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5577, CVE-2016-5578, CVE-2016-5579, and CVE-2016-5588.
network
low complexity
oracle CWE-284
8.6
2016-10-25 CVE-2016-5571 Improper Access Control vulnerability in Oracle Applications DBA
Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.1.3 and 12.2.3 through 12.2.6 allows remote administrators to affect confidentiality and integrity via vectors related to AD Utilities, a different vulnerability than CVE-2016-5567.
network
low complexity
oracle CWE-284
6.5
2016-10-25 CVE-2016-5570 Improper Access Control vulnerability in Oracle Applications DBA
Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.2.3 through 12.2.6 allows remote administrators to affect confidentiality and integrity via vectors related to AD Utilities.
network
low complexity
oracle CWE-284
6.5
2016-10-25 CVE-2016-5569 Improper Access Control vulnerability in Oracle Flexcube Enterprise Limits and Collateral Management 12.0.0/12.1.0
Unspecified vulnerability in the Oracle FLEXCUBE Enterprise Limits and Collateral Management component in Oracle Financial Services Applications 12.0.0 and 12.1.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
network
low complexity
oracle CWE-284
5.4
2016-10-25 CVE-2016-5568 Improper Access Control vulnerability in Oracle JDK and JRE
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, and 8u102 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT.
network
low complexity
oracle CWE-284
critical
9.6
2016-10-25 CVE-2016-5566 Improper Access Control vulnerability in Oracle Solaris 11.3
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows remote attackers to affect confidentiality via unknown vectors.
network
low complexity
oracle CWE-284
5.3
2016-10-25 CVE-2016-5565 Improper Access Control vulnerability in Oracle Hospitality Opera 5 Property Services
Unspecified vulnerability in the Oracle Hospitality OPERA 5 Property Services component in Oracle Hospitality Applications 5.4.0.0 through 5.4.3.0, 5.5.0.0, and 5.5.1.0 allows remote authenticated users to affect confidentiality via vectors related to OPERA.
network
low complexity
oracle CWE-284
7.7
2016-10-25 CVE-2016-5562 Improper Access Control vulnerability in Oracle Iprocurement
Unspecified vulnerability in the Oracle iProcurement component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
network
low complexity
oracle CWE-284
7.6