Vulnerabilities > Oracle > Hospitality Cruise Fleet Management > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-10-17 CVE-2018-3166 Unspecified vulnerability in Oracle Hospitality Cruise Fleet Management 9.0
Vulnerability in the Oracle Hospitality Cruise Fleet Management component of Oracle Hospitality Applications (subcomponent: Emergency Response System).
network
low complexity
oracle
6.5
2018-10-17 CVE-2018-3163 Unspecified vulnerability in Oracle Hospitality Cruise Fleet Management 9.0
Vulnerability in the Oracle Hospitality Cruise Fleet Management component of Oracle Hospitality Applications (subcomponent: Emergency Response System).
network
low complexity
oracle
6.5
2018-10-17 CVE-2018-3159 Unspecified vulnerability in Oracle Hospitality Cruise Fleet Management 9.0
Vulnerability in the Oracle Hospitality Cruise Fleet Management component of Oracle Hospitality Applications (subcomponent: Sender and Receiver).
local
low complexity
oracle
6.1
2018-07-18 CVE-2018-3003 Unspecified vulnerability in Oracle Hospitality Cruise Fleet Management 9.0
Vulnerability in the Oracle Hospitality Cruise Fleet Management System component of Oracle Hospitality Applications (subcomponent: Fleet Management System Suite).
local
low complexity
oracle
6.2
2018-01-18 CVE-2015-9251 Cross-site Scripting vulnerability in multiple products
jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax request is performed without the dataType option, causing text/javascript responses to be executed.
network
low complexity
jquery oracle CWE-79
6.1
2017-10-19 CVE-2017-10397 Unspecified vulnerability in Oracle Hospitality Cruise Fleet Management 9.0.2.0
Vulnerability in the Oracle Hospitality Cruise Fleet Management component of Oracle Hospitality Applications (subcomponent: BaseMasterPage).
network
low complexity
oracle
6.1
2017-10-19 CVE-2017-10395 Unspecified vulnerability in Oracle Hospitality Cruise Fleet Management 9.0.2.0
Vulnerability in the Oracle Hospitality Cruise Fleet Management component of Oracle Hospitality Applications (subcomponent: GangwayActivityWebApp).
network
low complexity
oracle
5.4
2017-03-15 CVE-2016-7103 Cross-site Scripting vulnerability in multiple products
Cross-site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via the closeText parameter of the dialog function.
6.1