Vulnerabilities > Oracle

DATE CVE VULNERABILITY TITLE RISK
2017-04-24 CVE-2017-3556 Information Exposure vulnerability in Oracle Application Object Library
Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: File Management).
network
low complexity
oracle CWE-200
5.3
2017-04-24 CVE-2017-3555 Allocation of Resources Without Limits or Throttling vulnerability in Oracle Ireceivables
Vulnerability in the Oracle iReceivables component of Oracle E-Business Suite (subcomponent: Self Registration).
network
low complexity
oracle CWE-770
7.5
2017-04-24 CVE-2017-3554 Unspecified vulnerability in Oracle Webcenter Sites
Vulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Catalog Mover).
network
low complexity
oracle
8.1
2017-04-24 CVE-2017-3553 Unspecified vulnerability in Oracle Identity Manager 11.1.2.3.0
Vulnerability in the Oracle Identity Manager component of Oracle Fusion Middleware (subcomponent: Rules Engine).
network
low complexity
oracle
critical
9.9
2017-04-24 CVE-2017-3552 Information Exposure vulnerability in Oracle Hospitality Opera 5 Property Services
Vulnerability in the Oracle Hospitality OPERA 5 Property Services component of Oracle Hospitality Applications (subcomponent: OPERA Room Image/Picture Setup).
network
low complexity
oracle CWE-200
4.3
2017-04-24 CVE-2017-3551 Unspecified vulnerability in Oracle Solaris 11.3
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Smartcard Libraries).
local
low complexity
oracle
6.6
2017-04-24 CVE-2017-3550 Unspecified vulnerability in Oracle Customer Interaction History 12.1.1/12.1.2/12.1.3
Vulnerability in the Oracle Customer Interaction History component of Oracle E-Business Suite (subcomponent: Admin Console).
network
low complexity
oracle
7.1
2017-04-24 CVE-2017-3549 SQL Injection vulnerability in Oracle Scripting
Vulnerability in the Oracle Scripting component of Oracle E-Business Suite (subcomponent: Scripting Administration).
network
low complexity
oracle CWE-89
critical
9.1
2017-04-24 CVE-2017-3548 XXE vulnerability in Oracle Peoplesoft Enterprise Peopletools 8.54/8.55
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Integration Broker).
network
low complexity
oracle CWE-611
6.5
2017-04-24 CVE-2017-3547 Injection vulnerability in Oracle Peoplesoft Enterprise Peopletools 8.54/8.55
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: MultiChannel Framework).
network
low complexity
oracle CWE-74
7.4