Vulnerabilities > Oracle > Medium

DATE CVE VULNERABILITY TITLE RISK
2009-07-14 CVE-2009-1984 Application Install Local vulnerability in Oracle E-Business Suite 11.5.10.2/12.0.6/12.1
Unspecified vulnerability in the Application Install component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to the Patch Administrator.
local
oracle
4.4
2009-07-14 CVE-2009-1983 Remote Oracle iStore vulnerability in Oracle E-Business Suite 11.5.10.2/12.0.6/12.1
Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1 allows remote attackers to affect integrity via unknown vectors.
network
oracle
4.3
2009-07-14 CVE-2009-1982 Remote Oracle Applications Framework vulnerability in Oracle E-Business Suite 11.5.10.2/12.0.6
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2 and 12.0.6 allows remote attackers to affect integrity via unknown vectors.
network
oracle
4.3
2009-07-14 CVE-2009-1980 Remote vulnerability in Oracle E-Business Suite 11.5.10.2/12.0.6/12.1
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
network
oracle
6.0
2009-07-14 CVE-2009-1976 Remote HTTP Server vulnerability in Oracle Application Server 10.1.2.3
Unspecified vulnerability in the HTTP Server component in Oracle Application Server 10.1.2.3 allows remote attackers to affect integrity via unknown vectors.
network
oracle
4.3
2009-07-14 CVE-2009-1975 Cross-Site Scripting vulnerability in Oracle BEA Product Suite 10.3
Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3 allows remote attackers to affect confidentiality, integrity, and availability, related to the WLS Console Package.
network
oracle
6.8
2009-07-14 CVE-2009-1974 Remote vulnerability in Oracle WebLogic Server
Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Servlet Container Package.
network
oracle
6.8
2009-07-14 CVE-2009-1973 Remote Virtual Private Database vulnerability in Oracle Database Server 10.1.0.5/10.2.0.4/11.1.0.7
Unspecified vulnerability in the Virtual Private Database component in Oracle Database 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect confidentiality and integrity, related to VPD policies.
network
low complexity
oracle
5.5
2009-07-14 CVE-2009-1970 Remote Denial of Service vulnerability in Oracle Database TNS Command
Unspecified vulnerability in the Listener component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect availability via unknown vectors, a different vulnerability than CVE-2009-0991.
network
low complexity
oracle
5.0
2009-07-14 CVE-2009-1968 Cross-Site Scripting vulnerability in Oracle Database Server 10.1.8.3
Unspecified vulnerability in the Secure Enterprise Search component in Oracle Database 10.1.8.3 allows remote attackers to affect integrity via unknown vectors.
network
oracle
4.3