Vulnerabilities > Oracle > Low

DATE CVE VULNERABILITY TITLE RISK
2014-08-26 CVE-2013-6335 Improper Preservation of Permissions vulnerability in IBM Tivoli Storage Manager
The Backup-Archive client in IBM Tivoli Storage Manager (TSM) for Space Management 5.x and 6.x before 6.2.5.3, 6.3.x before 6.3.2, 6.4.x before 6.4.2, and 7.1.x before 7.1.0.3 on Linux and AIX, and 5.x and 6.x before 6.1.5.6 on Solaris and HP-UX, does not preserve file permissions across backup and restore operations, which allows local users to bypass intended access restrictions via standard filesystem operations.
3.3
2014-07-17 CVE-2014-4235 Remote Security vulnerability in Oracle E-Business Suite
Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.3, 12.2.2, and 12.2.3 allows remote authenticated users to affect integrity via unknown vectors.
network
oracle
3.5
2014-07-17 CVE-2014-4240 Local Security vulnerability in Oracle MySQL Server
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.6.17 and earlier allows local users to affect confidentiality and integrity via vectors related to SRREP.
local
low complexity
oracle
3.6
2014-07-17 CVE-2014-4243 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to ENFED.
network
oracle mariadb suse
2.8
2014-07-17 CVE-2014-4245 Remote Security vulnerability in Oracle Database Server
Unspecified vulnerability in the RDBMS Core component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1 allows remote authenticated users to affect confidentiality via unknown vectors.
network
oracle
3.5
2014-07-17 CVE-2014-4246 Remote Security vulnerability in Oracle Hyperion 11.1.2.2/11.1.2.3
Unspecified vulnerability in the Hyperion Analytic Provider Services component in Oracle Hyperion 11.1.2.2 and 11.1.2.3 allows remote authenticated users to affect confidentiality via vectors related to SVP.
network
oracle
3.5
2014-07-17 CVE-2014-4248 Local Security vulnerability in Oracle E-Business Suite
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.3, 12.2.2, and 12.2.3 allows local users to affect confidentiality via unknown vectors related to Logging.
local
high complexity
oracle
1.0
2014-07-17 CVE-2014-4250 Remote Security vulnerability in Oracle Siebel CRM 8.1.1/8.2.2
Unspecified vulnerability in the Siebel Core - Server OM Frwks component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote authenticated users to affect confidentiality via unknown vectors related to Object Manager.
network
oracle
3.5
2014-07-17 CVE-2014-4251 Remote Security vulnerability in Oracle HTTP Server
Unspecified vulnerability in the Oracle HTTP Server component in Oracle Fusion Middleware 11.1.1.7.0 and 12.1.2.0 allows remote authenticated users to affect integrity via vectors related to plugin 1.1.
network
oracle
3.5
2014-07-17 CVE-2014-2477 Local Privilege Escalation vulnerability in Oracle VM VirtualBox
Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 3.2.24, 4.0.26, 4.1.34, 4.2.26, and 4.3.12 allows local users to affect integrity and availability via unknown vectors related to Core, a different vulnerability than CVE-2014-2486.
local
low complexity
oracle
3.6