Vulnerabilities > Oracle

DATE CVE VULNERABILITY TITLE RISK
2016-10-25 CVE-2016-5493 Improper Access Control vulnerability in Oracle Flexcube Private Banking 12.0.1/12.0.2/12.0.3
Unspecified vulnerability in the Oracle FLEXCUBE Private Banking component in Oracle Financial Services Applications 12.0.1 through 12.0.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
network
high complexity
oracle CWE-284
4.2
2016-10-25 CVE-2016-5492 Improper Access Control vulnerability in Oracle SUN ZFS Storage Appliance KIT Ak2013
Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows local users to affect confidentiality and integrity via vectors related to SMB Users.
local
low complexity
oracle CWE-284
7.1
2016-10-25 CVE-2016-5491 Improper Access Control vulnerability in Oracle Commerce Service Center 10.0.3.5/10.2.0.5
Unspecified vulnerability in the Oracle Commerce Service Center component in Oracle Commerce 10.0.3.5 and 10.2.0.5 allows remote attackers to affect confidentiality and integrity via unknown vectors.
network
low complexity
oracle CWE-284
8.2
2016-10-25 CVE-2016-5490 Unspecified vulnerability in Oracle Flexcube Universal Banking 11.4.0
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.4.0 allows local users to affect confidentiality via vectors related to INFRA.
local
low complexity
oracle
3.3
2016-10-25 CVE-2016-5489 Unspecified vulnerability in Oracle Istore
Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 12.1.1 through 12.1.3, 12.2.3, and 12.2.4 allows remote attackers to affect confidentiality and integrity via vectors related to Runtime Catalog.
network
low complexity
oracle
8.2
2016-10-25 CVE-2016-5488 Unspecified vulnerability in Oracle Weblogic Server 10.3.6.0.0/12.1.3.0.0
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0 and 12.1.3.0 allows remote attackers to affect availability via vectors related to Web Container, a different vulnerability than CVE-2016-3445.
network
low complexity
oracle
5.3
2016-10-25 CVE-2016-5487 Unspecified vulnerability in Oracle Solaris 11.3
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect confidentiality, integrity, and availability via unknown vectors.
local
low complexity
oracle
5.3
2016-10-25 CVE-2016-5486 Information Management Errors vulnerability in Oracle SUN ZFS Storage Appliance KIT Ak2013
Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows local users to affect confidentiality via vectors related to Core Services.
local
low complexity
oracle CWE-199
5.5
2016-10-25 CVE-2016-5482 Improper Access Control vulnerability in Oracle Commerce Guided Search
Unspecified vulnerability in the Oracle Commerce Guided Search component in Oracle Commerce 6.2.2, 6.3.0, 6.4.1.2, and 6.5.0 through 6.5.2 allows remote attackers to affect confidentiality and integrity via unknown vectors.
network
low complexity
oracle CWE-284
8.2
2016-10-25 CVE-2016-5481 Information Exposure vulnerability in Oracle SUN ZFS Storage Appliance KIT Ak2013
Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows remote attackers to affect confidentiality via vectors related to Core Services.
network
high complexity
oracle CWE-200
3.7