Vulnerabilities > Oracle > Medium

DATE CVE VULNERABILITY TITLE RISK
2011-04-20 CVE-2011-0789 Remote Security vulnerability in Oracle Fusion Middleware 10.1.2.3
Unspecified vulnerability in the Oracle HTTP Server component in Oracle Fusion Middleware 10.1.2.3 allows remote attackers to affect integrity via unknown vectors.
network
oracle
4.3
2011-04-20 CVE-2011-0787 Unspecified vulnerability in Oracle Database Server and Enterprise Manager Grid Control
Unspecified vulnerability in the Application Service Level Management component in Oracle Database Server 11.1.0.7 and Enterprise Manager Grid Control allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Service Level Agreements.
network
low complexity
oracle
5.5
2011-04-20 CVE-2011-0785 Remote Security vulnerability in Oracle10g Enterprise Edition
Unspecified vulnerability in the Oracle Help component in Oracle Database Server 11.1.0.7, 11.2.0.1, 11.2.0.2, 10.1.0.5, 10.2.0.3, 10.2.0.4, 10.2.0.5, and 10.1.0.5; and Oracle Fusion Middleware 11.1.1.2.0, 11.1.1.3.0, and 11.1.1.4.0 allows remote attackers to affect integrity via unknown vectors.
network
oracle
4.3
2011-02-07 CVE-2011-0902 Local Privilege Escalation vulnerability in Sun SunScreen Firewall
Multiple untrusted search path vulnerabilities in the Java Service in Sun Microsystems SunScreen Firewall on SunOS 5.9 allow local users to execute arbitrary code via a modified (1) PATH or (2) LD_LIBRARY_PATH environment variable.
local
oracle sun
6.9
2011-02-07 CVE-2010-4506 Cryptographic Issues vulnerability in Oracle Passlogix V-Go Self-Service Password Reset and OEM 7.0
Passlogix v-GO Self-Service Password Reset (SSPR) and OEM before 7.0A allows physically proximate attackers to execute arbitrary programs without authentication by triggering use of an invalid SSL certificate and using the Internet Explorer interface to navigate through the filesystem via a "Save As" dialog that is reachable from the "Certificate Export" wizard.
local
high complexity
oracle CWE-310
6.2
2011-01-19 CVE-2010-4464 Remote vulnerability in Oracle SUN Convergence 1.0
Unspecified vulnerability in Oracle Sun Convergence 1.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Webmail.
network
low complexity
oracle
6.4
2011-01-19 CVE-2010-4461 Remote vulnerability in Oracle Peoplesoft and Jdedwards Product Suite 8.9/9.0/9.1
Unspecified vulnerability in the PeopleSoft Enterprise HRMS component in Oracle PeopleSoft and JDEdwards Suite 8.9 Bundle #23, 9.0 Bundle #14, and 9.1 Bundle #4 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to ePerformance.
network
low complexity
oracle
5.5
2011-01-19 CVE-2010-4455 Remote Oracle HTTP Server vulnerability in Oracle Fusion Middleware 11.1.1.2.0/11.1.1.3.0
Unspecified vulnerability in the Oracle HTTP Server component in Oracle Fusion Middleware 11.1.1.2 and 11.1.1.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Apache Plugin.
network
low complexity
oracle
6.4
2011-01-19 CVE-2010-4453 Remote Oracle WebLogic Server vulnerability in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 7.0.7, 8.1.6, 9.0, 9.1, 9.2.4, 10.0.2, 10.3.2, and 10.3.3 allows remote attackers to affect integrity via unknown vectors related to Servlet Container.
network
oracle
4.3
2011-01-19 CVE-2010-4445 Remote vulnerability in Oracle PeopleSoft Enterprise HRMS
Unspecified vulnerability in the PeopleSoft Enterprise HRMS component in Oracle PeopleSoft and JDEdwards Suite 9.0 Bundle #14 and 9.1 Bundle #4 allows remote authenticated users to affect confidentiality via unknown vectors related to Talent Acquisition Manager.
network
low complexity
oracle
4.0