VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Oracle
> High
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2019-03-25
CVE-2019-3856
Integer Overflow or Wraparound vulnerability in multiple products
An integer overflow flaw, which could lead to an out of bounds write, was discovered in libssh2 before 1.8.1 in the way keyboard prompt requests are parsed.
network
low complexity
libssh2
debian
netapp
opensuse
redhat
fedoraproject
oracle
CWE-190
8.8
8.8
2019-03-21
CVE-2019-3855
Integer Overflow or Wraparound vulnerability in multiple products
An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way packets are read from the server.
network
low complexity
libssh2
fedoraproject
debian
netapp
redhat
opensuse
apple
oracle
CWE-190
8.8
8.8
2019-03-21
CVE-2018-20034
A Denial of Service vulnerability related to adding an item to a list in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
network
low complexity
flexera
oracle
7.5
7.5
2019-03-21
CVE-2018-20032
A Denial of Service vulnerability related to message decoding in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
network
low complexity
flexera
oracle
7.5
7.5
2019-03-21
CVE-2018-20031
A Denial of Service vulnerability related to preemptive item deletion in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
network
low complexity
flexera
oracle
7.5
7.5
2019-03-21
CVE-2018-12023
Deserialization of Untrusted Data vulnerability in multiple products
An issue was discovered in FasterXML jackson-databind prior to 2.7.9.4, 2.8.11.2, and 2.9.6.
network
high complexity
fasterxml
debian
fedoraproject
oracle
redhat
CWE-502
7.5
7.5
2019-03-21
CVE-2018-12022
Deserialization of Untrusted Data vulnerability in multiple products
An issue was discovered in FasterXML jackson-databind prior to 2.7.9.4, 2.8.11.2, and 2.9.6.
network
high complexity
fasterxml
debian
fedoraproject
oracle
redhat
CWE-502
7.5
7.5
2019-02-12
CVE-2018-20781
Insufficiently Protected Credentials vulnerability in multiple products
In pam/gkr-pam-module.c in GNOME Keyring before 3.27.2, the user's password is kept in a session-child process spawned from the LightDM daemon.
local
low complexity
gnome
canonical
oracle
CWE-522
7.8
7.8
2019-02-06
CVE-2019-7548
SQL Injection vulnerability in multiple products
SQLAlchemy 1.2.17 has SQL Injection when the group_by parameter can be controlled.
local
low complexity
sqlalchemy
debian
opensuse
redhat
oracle
CWE-89
7.8
7.8
2019-02-06
CVE-2019-3823
libcurl versions from 7.34.0 to before 7.64.0 are vulnerable to a heap out-of-bounds read in the code handling the end-of-response for SMTP.
network
low complexity
haxx
canonical
debian
netapp
oracle
7.5
7.5
«
Previous
1
2
...
75
76
77
(current)
78
79
...
171
172
»
Next