Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2017-10-19 CVE-2017-10341 Unspecified vulnerability in Oracle Java Advanced Management Console 2.7
Vulnerability in the Java Advanced Management Console component of Oracle Java SE (subcomponent: Server).
network
high complexity
oracle
3.7
2017-10-19 CVE-2017-10308 Unspecified vulnerability in Oracle Agile Product Lifecycle Management Framework 9.3.5/9.3.6
Vulnerability in the Oracle Agile PLM component of Oracle Supply Chain Products Suite (subcomponent: Performance).
low complexity
oracle
3.5
2017-10-19 CVE-2017-10292 Improper Privilege Management vulnerability in Oracle Database 11.2.0.4/12.1.0.2/12.2.0.1
Vulnerability in the RDBMS Security component of Oracle Database Server.
local
low complexity
oracle CWE-269
2.3
2017-10-19 CVE-2017-10194 Information Exposure vulnerability in Oracle Integrated Lights OUT Manager Firmware
Vulnerability in the Oracle Integrated Lights Out Manager (ILOM) component of Oracle Sun Systems Products Suite (subcomponent: System Management).
network
low complexity
oracle CWE-200
2.7
2017-10-19 CVE-2017-10166 Unspecified vulnerability in Oracle Security Service and Security Service FMW
Vulnerability in the Oracle Security Service component of Oracle Fusion Middleware (subcomponent: C Oracle SSL API).
network
high complexity
oracle
3.7
2017-10-19 CVE-2017-10014 Unspecified vulnerability in Oracle Hospitality Hotel Mobile 1.1
Vulnerability in the Oracle Hospitality Hotel Mobile component of Oracle Hospitality Applications (subcomponent: Suite8/RESTAPI).
network
low complexity
oracle
3.5
2017-10-05 CVE-2017-1000114 Information Exposure vulnerability in Jenkins Datadog
The Datadog Plugin stores an API key to access the Datadog service in the global Jenkins configuration.
network
high complexity
jenkins CWE-200
3.1
2017-10-03 CVE-2017-14772 Information Exposure vulnerability in Skyboxsecurity Skybox Manager Client Application
Skybox Manager Client Application is prone to information disclosure via a username enumeration attack.
local
low complexity
skyboxsecurity CWE-200
3.3
2017-09-26 CVE-2015-5070 Information Exposure vulnerability in multiple products
The (1) filesystem::get_wml_location function in filesystem.cpp and (2) is_legal_file function in filesystem_boost.cpp in Battle for Wesnoth before 1.12.4 and 1.13.x before 1.13.1, when a case-insensitive filesystem is used, allow remote attackers to obtain sensitive information via vectors related to inclusion of .pbl files from WML.
network
high complexity
wesnoth fedoraproject CWE-200
3.1
2017-09-26 CVE-2015-0238 Information Exposure vulnerability in Redhat Openshift 2.0
selinux-policy as packaged in Red Hat OpenShift 2 allows attackers to obtain process listing information via a privilege escalation attack.
local
low complexity
redhat CWE-200
3.3