Vulnerabilities > Oracle > Critical

DATE CVE VULNERABILITY TITLE RISK
2007-10-17 CVE-2007-5534 Unspecified vulnerability in Oracle Peoplesoft Enterprise 8.8/8.9/9.0
Unspecified vulnerability in the HCM component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.9 Bundle 13 9.0 Bundle 3 has unknown impact and remote attack vectors, aka PSE_HCM01.
network
low complexity
oracle
critical
9.0
2007-10-17 CVE-2007-5531 Unspecified vulnerability in Oracle products
Unspecified vulnerability in Oracle Help for Web, as used in Oracle Application Server, Oracle Database 10.2.0.3, and Enterprise Manager 10.1.0.6, has unknown impact and remote attack vectors, aka EM02.
network
low complexity
oracle
critical
10.0
2007-10-17 CVE-2007-5530 Unspecified vulnerability in Oracle Database Server 10.1.0.5/10.2.0.3
Unspecified vulnerability in the Database Control component in Oracle Database 10.1.0.5 and 10.2.0.3, and Enterprise Manager, has unknown impact and remote attack vectors, aka EM01.
network
low complexity
oracle
critical
10.0
2007-10-17 CVE-2007-5528 Unspecified vulnerability in Oracle E-Business Suite 12.0.2
Multiple unspecified vulnerabilities in Oracle E-Business Suite 12.0.2 have unknown impact and attack vectors related to (1) Public Sector Human Resources (APP03) and (2) Quoting component (APP06).
network
low complexity
oracle
critical
10.0
2007-10-17 CVE-2007-5526 Unspecified vulnerability in Oracle Application Server and Collaboration Suite
Unspecified vulnerability in the Oracle Portal component in Oracle Application Server 10.1.2.0.2, 10.1.2.2, and 10.1.4.1, and Collaboration Suite 10.1.2, has unknown impact and remote attack vectors, aka AS11.
network
low complexity
oracle
critical
10.0
2007-08-31 CVE-2007-4467 Improper Input Validation vulnerability in Oracle Jinitiator
Multiple stack-based buffer overflows in the Oracle JInitiator ActiveX control (beans.ocx) 1.1.8.16 and earlier, as used by Oracle Forms applications from Oracle and third parties, allow remote attackers to execute arbitrary code via unspecified "initialization parameters." NOTE: it was later reported that 1.1.8.3 through 1.1.8.25, and probably 1.1.5.x and 1.1.7.x, are affected.
network
oracle CWE-20
critical
9.3
2007-04-24 CVE-2007-2170 Unspecified vulnerability in Oracle E-Business Suite
The APPLSYS.FND_DM_NODES package in Oracle E-Business Suite does not check for valid sessions, which allows remote attackers to delete arbitrary nodes.
network
low complexity
oracle
critical
9.4
2007-04-18 CVE-2007-2133 Multiple vulnerability in Oracle Peoplesoft Enterprise 8.9
Unspecified vulnerability in the PeopleSoft Enterprise Human Capital Management component in Oracle PeopleSoft Enterprise 8.9 has unknown impact and attack vectors, aka PSEHCM01.
network
low complexity
oracle
critical
10.0
2007-04-18 CVE-2007-2132 Multiple vulnerability in Oracle Peoplesoft Enterprise 8.47.12/8.48.08
Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise 8.47.12 and 8.48.08 has unknown impact and attack vectors, aka PSE02.
network
low complexity
oracle
critical
10.0
2007-04-18 CVE-2007-2131 Multiple vulnerability in Oracle Peoplesoft Enterprise 8.22.14/8.47.12/8.48.08
Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.22.14, 8.47.12, and 8.48.08 has unknown impact and attack vectors, aka PSE01.
network
low complexity
oracle
critical
10.0