Vulnerabilities > Oracle > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-11-14 CVE-2017-10272 Unspecified vulnerability in Oracle Tuxedo
Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Core).
network
low complexity
oracle
6.5
2017-11-14 CVE-2017-10267 Information Exposure vulnerability in Oracle Tuxedo
Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Core).
network
low complexity
oracle CWE-200
5.0
2017-11-14 CVE-2017-10266 Information Exposure vulnerability in Oracle Tuxedo
Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Core).
network
low complexity
oracle CWE-200
5.0
2017-10-26 CVE-2017-15906 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
The process_open function in sftp-server.c in OpenSSH before 7.6 does not properly prevent write operations in readonly mode, which allows attackers to create zero-length files.
network
low complexity
openbsd oracle debian netapp redhat CWE-732
5.3
2017-10-19 CVE-2017-3588 Unspecified vulnerability in Oracle Solaris Cluster 3.3/4.3
Vulnerability in the Solaris Cluster component of Oracle Sun Systems Products Suite (subcomponent: HA for MySQL).
local
oracle
4.4
2017-10-19 CVE-2017-3446 Unspecified vulnerability in Oracle Trade Management
Vulnerability in the Oracle Trade Management component of Oracle E-Business Suite (subcomponent: User Interface).
network
oracle
5.8
2017-10-19 CVE-2017-3445 Unspecified vulnerability in Oracle Trade Management
Vulnerability in the Oracle Trade Management component of Oracle E-Business Suite (subcomponent: User Interface).
network
oracle
5.8
2017-10-19 CVE-2017-3444 Unspecified vulnerability in Oracle Trade Management
Vulnerability in the Oracle Trade Management component of Oracle E-Business Suite (subcomponent: User Interface).
network
oracle
5.8
2017-10-19 CVE-2017-10428 Unspecified vulnerability in Oracle VM Virtualbox
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core).
local
oracle
4.1
2017-10-19 CVE-2017-10427 Unspecified vulnerability in Oracle Retail Xstore Point of Service
Vulnerability in the Oracle Retail Xstore Point of Service component of Oracle Retail Applications (subcomponent: Point of Sale).
network
oracle
6.8