Vulnerabilities > Oracle > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-07-18 CVE-2018-2897 Unspecified vulnerability in Oracle Flexcube Enterprise Limits and Collateral Management 12.3.0/14.0.0/14.1.0
Vulnerability in the Oracle FLEXCUBE Enterprise Limits and Collateral Management component of Oracle Financial Services Applications (subcomponent: Infrastructure).
network
low complexity
oracle
6.1
2018-07-18 CVE-2018-2896 Unspecified vulnerability in Oracle Banking Payments
Vulnerability in the Oracle Banking Payments component of Oracle Financial Services Applications (subcomponent: Payments Core).
network
low complexity
oracle
6.1
2018-07-18 CVE-2018-2895 Unspecified vulnerability in Oracle Banking Corporate Lending
Vulnerability in the Oracle Banking Corporate Lending component of Oracle Financial Services Applications (subcomponent: Core module).
network
low complexity
oracle
6.1
2018-07-18 CVE-2018-2891 Unspecified vulnerability in Oracle Retail Bulk Data Integration 16.0
Vulnerability in the Oracle Retail Bulk Data Integration component of Oracle Retail Applications (subcomponent: BDI Job Scheduler).
network
low complexity
oracle
6.1
2018-07-18 CVE-2018-2888 Unspecified vulnerability in Oracle Micros Retail-J
Vulnerability in the MICROS Retail-J component of Oracle Retail Applications (subcomponent: Back Office).
high complexity
oracle
6.7
2018-07-18 CVE-2018-2881 Unspecified vulnerability in Oracle Micros Retail-J
Vulnerability in the MICROS Retail-J component of Oracle Retail Applications (subcomponent: Database).
network
low complexity
oracle
6.3
2018-07-13 CVE-2018-14048 An issue has been found in libpng 1.6.34.
network
low complexity
libpng oracle
6.5
2018-07-10 CVE-2018-3693 Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a speculative buffer overflow and side-channel analysis. 5.6
2018-07-09 CVE-2018-13785 Integer Overflow or Wraparound vulnerability in multiple products
In libpng 1.6.34, a wrong calculation of row_factor in the png_check_chunk_length function (pngrutil.c) may trigger an integer overflow and resultant divide-by-zero while processing a crafted PNG file, leading to a denial of service.
network
low complexity
libpng canonical oracle redhat CWE-190
6.5
2018-06-27 CVE-2018-12536 In Eclipse Jetty Server, all 9.x versions, on webapps deployed using default Error Handling, when an intentionally bad query arrives that doesn't match a dynamic url-pattern, and is eventually handled by the DefaultServlet's static file serving, the bad characters can trigger a java.nio.file.InvalidPathException which includes the full path to the base resource directory that the DefaultServlet and/or webapp is using.
network
low complexity
eclipse oracle
5.3