Vulnerabilities > Oracle > Database

DATE CVE VULNERABILITY TITLE RISK
2016-07-21 CVE-2016-3489 Local Security vulnerability in Oracle Database 11.2.0.4/12.1.0.1/12.1.0.2
Unspecified vulnerability in the Data Pump Import component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows local users to affect confidentiality, integrity, and availability via unknown vectors.
local
low complexity
oracle
7.2
2016-07-21 CVE-2016-3488 Local Security vulnerability in Oracle Database 12.1.0.2
Unspecified vulnerability in the DB Sharding component in Oracle Database Server 12.1.0.2 allows local users to affect integrity via unknown vectors.
local
low complexity
oracle
4.9
2016-07-21 CVE-2016-3484 Local Security vulnerability in Oracle Database 11.2.0.4/12.1.0.1/12.1.0.2
Unspecified vulnerability in the Database Vault component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows local users to affect confidentiality and integrity via unknown vectors.
local
low complexity
oracle
3.2
2016-07-21 CVE-2016-3479 Remote Security vulnerability in Oracle Database 11.2.0.4/12.1.0.2
Unspecified vulnerability in the Portable Clusterware component in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows remote attackers to affect availability via unknown vectors.
network
low complexity
oracle
7.8
2016-04-21 CVE-2016-3454 Remote Security vulnerability in Oracle Database 11.2.0.4/12.1.0.1/12.1.0.2
Unspecified vulnerability in the Java VM component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
high complexity
oracle
7.6
2016-04-21 CVE-2016-0691 Remote Security vulnerability in Oracle Database 11.2.0.4/12.1.0.1/12.1.0.2
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows local users to affect integrity via unknown vectors, a different vulnerability than CVE-2016-0690.
network
low complexity
oracle
4.0
2016-04-21 CVE-2016-0690 Remote Security vulnerability in Oracle Database 11.2.0.4/12.1.0.1/12.1.0.2
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows local users to affect integrity via unknown vectors, a different vulnerability than CVE-2016-0691.
network
low complexity
oracle
4.0
2016-04-21 CVE-2016-0677 Remote Security vulnerability in Oracle Database Server
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 12.1.0.1 and 12.1.0.2 allows remote attackers to affect availability via unknown vectors.
network
low complexity
oracle
5.0
2014-10-15 CVE-2014-3566 Cryptographic Issues vulnerability in multiple products
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue.
3.4
2010-01-13 CVE-2010-0076 Remote Application vulnerability in Oracle Database 3.2.1.00.10
Unspecified vulnerability in the Application Express Application Builder component in Oracle Database 3.2.1.00.10 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
network
oracle
6.0