Vulnerabilities > Oracle > Medium

DATE CVE VULNERABILITY TITLE RISK
2014-10-15 CVE-2014-4274 Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows local users to affect confidentiality, integrity, and availability via vectors related to SERVER:MyISAM.
local
oracle mariadb
4.1
2014-10-15 CVE-2014-2476 Remote Security vulnerability in Oracle Secure Global Desktop
Unspecified vulnerability in the Oracle Secure Global Desktop component in Oracle Virtualization 5.0 and 5.1 allows remote attackers to affect availability via vectors related to SGD Proxy Server (ttaauxserv), a different vulnerability than CVE-2014-2472, CVE-2014-2474, and CVE-2014-6459.
network
low complexity
oracle
5.0
2014-10-15 CVE-2014-2475 Remote Security vulnerability in Oracle Secure Global Desktop
Unspecified vulnerability in the Oracle Secure Global Desktop component in Oracle Virtualization 4.63, 4.71, 5.0, and 5.1 allows remote attackers to affect availability via vectors related to SGD Proxy Server (ttaauxserv).
network
low complexity
oracle
5.0
2014-10-15 CVE-2014-2474 Remote Security vulnerability in Oracle Secure Global Desktop
Unspecified vulnerability in the Oracle Secure Global Desktop component in Oracle Virtualization 5.0 and 5.1 allows remote attackers to affect availability via vectors related to SGD Proxy Server (ttaauxserv), a different vulnerability than CVE-2014-2472, CVE-2014-2476, and CVE-2014-6459.
network
low complexity
oracle
5.0
2014-10-15 CVE-2014-2473 Remote Security vulnerability in Oracle Secure Global Desktop
Unspecified vulnerability in the Oracle Secure Global Desktop component in Oracle Virtualization 5.0 and 5.1 allows remote attackers to affect availability via vectors related to SGD Proxy Server (ttaauxserv) and SGD SSL Daemon (ttassl).
network
low complexity
oracle
5.0
2014-10-15 CVE-2014-2472 Remote Security vulnerability in Oracle Secure Global Desktop
Unspecified vulnerability in the Oracle Secure Global Desktop component in Oracle Virtualization 5.0 and 5.1 allows remote attackers to affect availability via vectors related to SGD Proxy Server (ttaauxserv), a different vulnerability than CVE-2014-2474, CVE-2014-2476, and CVE-2014-6459.
network
low complexity
oracle
5.0
2014-09-12 CVE-2014-6270 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Off-by-one error in the snmpHandleUdp function in snmp_core.cc in Squid 2.x and 3.x, when an SNMP port is configured, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted UDP SNMP request, which triggers a heap-based buffer overflow.
6.8
2014-07-23 CVE-2014-1561 Permissions, Privileges, and Access Controls vulnerability in multiple products
Mozilla Firefox before 31.0 does not properly restrict use of drag-and-drop events to spoof customization events, which allows remote attackers to alter the placement of UI icons via crafted JavaScript code that is encountered during (1) page, (2) panel, or (3) toolbar customization.
5.8
2014-07-17 CVE-2014-4271 Remote Security vulnerability in Oracle Hyperion 11.1.2.2/11.1.2.3
Unspecified vulnerability in the Hyperion Essbase component in Oracle Hyperion 11.1.2.2 and 11.1.2.3 allows remote attackers to affect availability via unknown vectors related to Agent.
network
low complexity
oracle
5.0
2014-07-17 CVE-2014-4270 Remote Security vulnerability in Oracle Hyperion 11.1.2.2/11.1.2.3
Unspecified vulnerability in the Hyperion Common Admin component in Oracle Hyperion 11.1.2.2 and 11.1.2.3 allows remote authenticated users to affect confidentiality via unknown vectors related to User Interface, a different vulnerability than CVE-2014-4269.
network
low complexity
oracle
4.0