Vulnerabilities > Oracle

DATE CVE VULNERABILITY TITLE RISK
2016-10-25 CVE-2016-5502 Improper Access Control vulnerability in Oracle Flexcube Universal Banking
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.3.0, 11.4.0, 12.0.1 through 12.0.3 allows remote authenticated users to affect confidentiality and integrity via vectors related to INFRA.
network
low complexity
oracle CWE-284
5.5
2016-10-25 CVE-2016-5501 Local Security vulnerability in Oracle VM VirtualBox
Unspecified vulnerability in the Oracle VM VirtualBox component before 5.0.28 and 5.1.x before 5.1.8 in Oracle Virtualization allows local users to affect confidentiality, integrity, and availability via vectors related to Core, a different vulnerability than CVE-2016-5538.
local
low complexity
oracle
7.2
2016-10-25 CVE-2016-5500 Information Exposure vulnerability in Oracle Discoverer 11.1.1.7.0
Unspecified vulnerability in the Oracle Discoverer component in Oracle Fusion Middleware 11.1.1.7.0 allows remote attackers to affect confidentiality via vectors related to Viewer.
network
low complexity
oracle CWE-200
5.0
2016-10-25 CVE-2016-5499 Permissions, Privileges, and Access Controls vulnerability in Oracle Database Server 11.2.0.4/12.1.0.2
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows local users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2016-5498.
local
low complexity
oracle CWE-264
2.1
2016-10-25 CVE-2016-5498 Information Exposure vulnerability in Oracle Database Server 11.2.0.4/12.1.0.2
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows local users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2016-5499.
local
low complexity
oracle CWE-200
2.1
2016-10-25 CVE-2016-5497 Improper Access Control vulnerability in Oracle Database 12.1.0.2
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 12.1.0.2 allows local users to affect confidentiality, integrity, and availability via unknown vectors.
local
oracle CWE-284
4.4
2016-10-25 CVE-2016-5495 Improper Access Control vulnerability in Oracle Discoverer 11.1.1.7.0
Unspecified vulnerability in the Oracle Discoverer component in Oracle Fusion Middleware 11.1.1.7.0 allows remote attackers to affect confidentiality via vectors related to EUL Code & Schema.
network
low complexity
oracle CWE-284
5.0
2016-10-25 CVE-2016-5493 Improper Access Control vulnerability in Oracle Flexcube Private Banking 12.0.1/12.0.2/12.0.3
Unspecified vulnerability in the Oracle FLEXCUBE Private Banking component in Oracle Financial Services Applications 12.0.1 through 12.0.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
network
oracle CWE-284
4.9
2016-10-25 CVE-2016-5492 Improper Access Control vulnerability in Oracle SUN ZFS Storage Appliance KIT Ak2013
Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows local users to affect confidentiality and integrity via vectors related to SMB Users.
local
low complexity
oracle CWE-284
3.6
2016-10-25 CVE-2016-5491 Improper Access Control vulnerability in Oracle Commerce Service Center 10.0.3.5/10.2.0.5
Unspecified vulnerability in the Oracle Commerce Service Center component in Oracle Commerce 10.0.3.5 and 10.2.0.5 allows remote attackers to affect confidentiality and integrity via unknown vectors.
network
oracle CWE-284
5.8