Vulnerabilities > Redhat

DATE CVE VULNERABILITY TITLE RISK
2013-04-17 CVE-2013-1552 Unspecified vulnerability in Oracle MySQL 5.1.67 and earlier and 5.5.29 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
oracle mariadb redhat
6.5
2013-04-17 CVE-2013-1548 Unspecified vulnerability in Oracle MySQL 5.1.63 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Types. 3.5
2013-04-17 CVE-2013-1544 Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier allows remote authenticated users to affect availability via unknown vectors related to Data Manipulation Language.
network
low complexity
oracle mariadb redhat
4.0
2013-04-17 CVE-2013-1532 Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier allows remote authenticated users to affect availability via unknown vectors related to Information Schema.
network
low complexity
oracle mariadb redhat
4.0
2013-04-17 CVE-2013-1531 Unspecified vulnerability in Oracle MySQL 5.1.66 and earlier and 5.5.28 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Server Privileges.
network
low complexity
oracle mariadb redhat
6.5
2013-04-17 CVE-2013-1521 Unspecified vulnerability in Oracle MySQL 5.1.67 and earlier and 5.5.29 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Server Locking.
network
low complexity
oracle mariadb redhat
6.5
2013-04-17 CVE-2013-1506 Unspecified vulnerability in Oracle MySQL 5.1.67 and earlier, 5.5.29 and earlier, and 5.6.10 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Locking. 2.8
2013-04-12 CVE-2013-0315 Permissions, Privileges, and Access Controls vulnerability in Redhat Jboss Enterprise Portal Platform 5.2.2
The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 allows remote attackers to read arbitrary files via a crafted external XML entity in an XML document, aka an XML Entity Expansion (XEE) attack.
network
low complexity
redhat CWE-264
5.0
2013-04-12 CVE-2013-0314 Improper Authentication vulnerability in Redhat Jboss Enterprise Portal Platform 5.2.2
The GateIn Portal export/import gadget in JBoss Enterprise Portal Platform 5.2.2 does not properly check authentication when importing Zip files, which allows remote attackers to modify site contents, remove the site, or alter the access controls for portlets.
network
low complexity
redhat CWE-287
7.5
2013-04-12 CVE-2012-3532 Cross-Site Request Forgery (CSRF) vulnerability in Redhat Jboss Enterprise Portal Platform
Cross-site request forgery (CSRF) vulnerability in the GateIn Portal component in JBoss Enterprise Portal Platform 5.2.2 and earlier allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
network
redhat CWE-352
6.8