Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2016-10-25 CVE-2016-5557 Improper Access Control vulnerability in Oracle Advanced Pricing
Unspecified vulnerability in the Oracle Advanced Pricing component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote attackers to affect confidentiality and integrity via unknown vectors.
network
low complexity
oracle CWE-284
8.2
2016-10-25 CVE-2016-5544 Unspecified vulnerability in Oracle Solaris 10/11.3
Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect confidentiality, integrity, and availability via vectors related to Kernel/X86.
local
low complexity
oracle
7.8
2016-10-25 CVE-2016-5539 Unspecified vulnerability in Oracle Micros Xstore Payment 1.0
Unspecified vulnerability in the Oracle Retail Xstore Payment component in Oracle Retail Applications 1.x allows local users to affect confidentiality, integrity, and availability via unknown vectors.
low complexity
oracle
7.3
2016-10-25 CVE-2016-5536 Improper Access Control vulnerability in Oracle Platform Security for Java 12.1.3.0.0/12.2.1.0.0/12.2.1.1.0
Unspecified vulnerability in the Oracle Platform Security for Java component in Oracle Fusion Middleware 12.1.3.0.0, 12.2.1.0.0, and 12.2.1.1.0 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2016-8281.
network
low complexity
oracle CWE-284
7.6
2016-10-25 CVE-2016-5526 Improper Access Control vulnerability in Oracle Agile Product Lifecycle Management Framework 9.3.4/9.3.5
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Apache Tomcat.
network
low complexity
oracle CWE-284
7.3
2016-10-25 CVE-2016-5523 Unspecified vulnerability in Oracle Agile Product Lifecycle Management Framework 9.3.4/9.3.5
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to AutoVue Java Applet.
network
low complexity
oracle
8.8
2016-10-25 CVE-2016-5519 Unspecified vulnerability in Oracle Glassfish Server 2.1.1/3.0.1/3.1.2
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1, 3.0.1, and 3.1.2 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to Java Server Faces.
network
low complexity
oracle
8.8
2016-10-25 CVE-2016-5518 Unspecified vulnerability in Oracle Agile Engineering Data Management 6.1.3.0/6.2.0.0
Unspecified vulnerability in the Oracle Agile Engineering Data Management component in Oracle Supply Chain Products Suite 6.1.3.0 and 6.2.0.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to webfileservices.
network
high complexity
oracle
8.1
2016-10-25 CVE-2016-5515 Unspecified vulnerability in Oracle Agile Product Lifecycle Management Framework 9.3.4/9.3.5
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to RMIServlet.
network
low complexity
oracle
8.8
2016-10-25 CVE-2016-5514 Unspecified vulnerability in Oracle Agile Product Lifecycle Management Framework 9.3.4/9.3.5
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to ExportServlet.
network
low complexity
oracle
8.8