Vulnerabilities > Oracle > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-10-16 CVE-2019-2884 Unspecified vulnerability in Oracle Retail Customer Management and Segmentation Foundation 17.0
Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications (component: Segment).
network
high complexity
oracle
5.9
2019-10-16 CVE-2019-2883 Unspecified vulnerability in Oracle Retail Customer Management and Segmentation Foundation 17.0
Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications (component: Segment).
network
low complexity
oracle
4.6
2019-10-16 CVE-2019-2765 Unspecified vulnerability in Oracle Solaris 10/11
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem).
local
high complexity
oracle
5.3
2019-10-16 CVE-2019-2734 Unspecified vulnerability in Oracle Database Server 12.2.0.1/18C/19C
Vulnerability in the Core RDBMS component of Oracle Database Server.
network
low complexity
oracle
4.3
2019-10-16 CVE-2018-3300 Unspecified vulnerability in Oracle Retail Xstore Office 7.1
Vulnerability in the Oracle Retail Xstore Office product of Oracle Retail Applications (component: Internal Operations).
network
low complexity
oracle
5.4
2019-10-16 CVE-2018-2875 Unspecified vulnerability in Oracle Database Server 12.2.0.1/18C/19C
Vulnerability in the Core RDBMS component of Oracle Database Server.
network
low complexity
oracle
5.0
2019-10-03 CVE-2019-15165 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
sf-pcapng.c in libpcap before 1.9.1 does not properly validate the PHB header length before allocating memory.
5.3
2019-10-02 CVE-2019-17091 Cross-site Scripting vulnerability in multiple products
faces/context/PartialViewContextImpl.java in Eclipse Mojarra, as used in Mojarra for Eclipse EE4J before 2.3.10 and Mojarra JavaServer Faces before 2.2.20, allows Reflected XSS because a client window field is mishandled.
network
low complexity
eclipse oracle CWE-79
6.1
2019-09-26 CVE-2019-10092 Cross-site Scripting vulnerability in multiple products
In Apache HTTP Server 2.4.0-2.4.39, a limited cross-site scripting issue was reported affecting the mod_proxy error page.
6.1
2019-09-18 CVE-2019-3740 Information Exposure Through Discrepancy vulnerability in multiple products
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to an Information Exposure Through Timing Discrepancy vulnerabilities during DSA key generation.
network
low complexity
dell oracle CWE-203
6.5