Vulnerabilities > Oracle > High

DATE CVE VULNERABILITY TITLE RISK
2016-10-25 CVE-2016-5519 Unspecified vulnerability in Oracle Glassfish Server 2.1.1/3.0.1/3.1.2
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1, 3.0.1, and 3.1.2 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to Java Server Faces.
network
low complexity
oracle
8.8
2016-10-25 CVE-2016-5518 Unspecified vulnerability in Oracle Agile Engineering Data Management 6.1.3.0/6.2.0.0
Unspecified vulnerability in the Oracle Agile Engineering Data Management component in Oracle Supply Chain Products Suite 6.1.3.0 and 6.2.0.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to webfileservices.
network
high complexity
oracle
8.1
2016-10-25 CVE-2016-5515 Unspecified vulnerability in Oracle Agile Product Lifecycle Management Framework 9.3.4/9.3.5
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to RMIServlet.
network
low complexity
oracle
8.8
2016-10-25 CVE-2016-5514 Unspecified vulnerability in Oracle Agile Product Lifecycle Management Framework 9.3.4/9.3.5
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to ExportServlet.
network
low complexity
oracle
8.8
2016-10-25 CVE-2016-5503 Unspecified vulnerability in Oracle SUN ZFS Storage Appliance KIT Ak2013
Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows local users to affect confidentiality, integrity, and availability via vectors related to Core Services.
local
low complexity
oracle
8.2
2016-10-25 CVE-2016-5501 Unspecified vulnerability in Oracle VM Virtualbox
Unspecified vulnerability in the Oracle VM VirtualBox component before 5.0.28 and 5.1.x before 5.1.8 in Oracle Virtualization allows local users to affect confidentiality, integrity, and availability via vectors related to Core, a different vulnerability than CVE-2016-5538.
local
high complexity
oracle
7.8
2016-10-25 CVE-2016-5500 Information Exposure vulnerability in Oracle Discoverer 11.1.1.7.0
Unspecified vulnerability in the Oracle Discoverer component in Oracle Fusion Middleware 11.1.1.7.0 allows remote attackers to affect confidentiality via vectors related to Viewer.
network
low complexity
oracle CWE-200
7.5
2016-10-25 CVE-2016-5495 Improper Access Control vulnerability in Oracle Discoverer 11.1.1.7.0
Unspecified vulnerability in the Oracle Discoverer component in Oracle Fusion Middleware 11.1.1.7.0 allows remote attackers to affect confidentiality via vectors related to EUL Code & Schema.
network
low complexity
oracle CWE-284
7.5
2016-10-25 CVE-2016-5492 Improper Access Control vulnerability in Oracle SUN ZFS Storage Appliance KIT Ak2013
Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows local users to affect confidentiality and integrity via vectors related to SMB Users.
local
low complexity
oracle CWE-284
7.1
2016-10-25 CVE-2016-5491 Improper Access Control vulnerability in Oracle Commerce Service Center 10.0.3.5/10.2.0.5
Unspecified vulnerability in the Oracle Commerce Service Center component in Oracle Commerce 10.0.3.5 and 10.2.0.5 allows remote attackers to affect confidentiality and integrity via unknown vectors.
network
low complexity
oracle CWE-284
8.2