Vulnerabilities > Oracle > Low

DATE CVE VULNERABILITY TITLE RISK
2014-04-16 CVE-2014-0465 Remote Security vulnerability in Oracle Fusion Middleware 8.0
Unspecified vulnerability in the Oracle OpenSSO component in Oracle Fusion Middleware 8.0 Update 2 Patch 5 allows remote authenticated users to affect integrity via unknown vectors related to Admin Console.
network
oracle
3.5
2014-04-16 CVE-2014-2398 Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and JRockit R27.8.1 and R28.3.1 allows remote authenticated users to affect integrity via unknown vectors related to Javadoc. 3.5
2014-03-19 CVE-2014-1504 Permissions, Privileges, and Access Controls vulnerability in multiple products
The session-restore feature in Mozilla Firefox before 28.0 and SeaMonkey before 2.25 does not consider the Content Security Policy of a data: URL, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document that is accessed after a browser restart.
network
high complexity
mozilla opensuse oracle suse CWE-264
2.6
2014-01-15 CVE-2013-5764 Remote Security vulnerability in Oracle Database Server 11.1.0.7/11.2.0.3/12.1.0.1
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.3, and 12.1.0.1 allows remote authenticated users to affect availability via unknown vectors.
network
oracle
3.5
2014-01-15 CVE-2013-5808 Remote Security vulnerability in Oracle Fusion Middleware 4.0
Unspecified vulnerability in the Oracle iPlanet Web Proxy Server component in Oracle Fusion Middleware 4.0 allows remote attackers to affect confidentiality via unknown vectors related to Administration.
network
high complexity
oracle
2.6
2014-01-15 CVE-2013-5868 Remote Security vulnerability in Oracle Supply Chain products Suite 20.1.1
Unspecified vulnerability in the Oracle AutoVue Electro-Mechanical Professional component in Oracle Supply Chain Products Suite 20.1.1 allows remote authenticated users to affect confidentiality via unknown vectors related to Web General, a different vulnerability than CVE-2013-5871 and CVE-2014-0444.
network
oracle
3.5
2014-01-15 CVE-2013-5871 Remote Security vulnerability in Oracle Supply Chain products Suite 20.1.1
Unspecified vulnerability in the Oracle AutoVue Electro-Mechanical Professional component in Oracle Supply Chain Products Suite 20.1.1 allows remote authenticated users to affect confidentiality via unknown vectors related to Web General, a different vulnerability than CVE-2013-5868 and CVE-2014-0444.
network
oracle
3.5
2014-01-15 CVE-2013-5872 Local Security vulnerability in Oracle Solaris
Unspecified vulnerability in Oracle Solaris 10 and 11.1 allows local users to affect availability via vectors related to Name Service Cache Daemon (NSCD).
local
low complexity
oracle sun
2.1
2014-01-15 CVE-2013-5874 Local Security vulnerability in Oracle E-Business Suite
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.3, and 12.2.2 allows local users to affect confidentiality via unknown vectors related to Logging.
local
low complexity
oracle
1.7
2014-01-15 CVE-2013-5875 Local Security vulnerability in Oracle Sunos 5.11.1
Unspecified vulnerability in Oracle Solaris 11.1 allows local users to affect integrity and availability via vectors related to Role Based Access Control (RBAC).
local
oracle
2.7