Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2017-01-27 CVE-2016-8328 Unspecified vulnerability in Oracle JDK and JRE
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Java Mission Control).
network
high complexity
oracle
3.7
2017-01-27 CVE-2016-8314 7PK - Security Features vulnerability in Oracle Flexcube Core Banking 11.5.0/5.1.0/5.2.0
Vulnerability in the Oracle FLEXCUBE Core Banking component of Oracle Financial Services Applications (subcomponent: Core).
network
high complexity
oracle CWE-254
3.1
2017-01-27 CVE-2016-8305 Information Exposure vulnerability in Oracle Flexcube Universal Banking
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core).
low complexity
oracle CWE-200
2.1
2017-01-27 CVE-2016-5509 Unspecified vulnerability in Oracle Flexcube Investor Servicing
Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Core).
network
high complexity
oracle
3.1
2017-01-27 CVE-2016-1551 7PK - Security Features vulnerability in multiple products
ntpd in NTP 4.2.8p3 and NTPsec a5fb34b9cc89b92a8fef2f459004865c93bb7f92 relies on the underlying operating system to protect it from requests that impersonate reference clocks.
network
high complexity
ntp ntpsec CWE-254
3.7
2017-01-26 CVE-2016-9932 Information Exposure vulnerability in XEN
CMPXCHG8B emulation in Xen 3.3.x through 4.7.x on x86 systems allows local HVM guest OS users to obtain sensitive information from host stack memory via a "supposedly-ignored" operand size prefix.
local
low complexity
xen CWE-200
3.3
2017-01-13 CVE-2016-7429 Source Code vulnerability in NTP 4.2.4/4.2.7/4.2.8
NTP before 4.2.8p9 changes the peer structure to the interface it receives the response from a source, which allows remote attackers to cause a denial of service (prevent communication with a source) by sending a response for a source to an interface the source does not use.
network
high complexity
ntp CWE-18
3.7
2017-01-12 CVE-2016-6770 Improper Access Control vulnerability in Google Android
An elevation of privilege vulnerability in the Framework API could enable a local malicious application to access system functions beyond its access level.
local
low complexity
google CWE-284
3.3
2017-01-11 CVE-2016-9015 Improper Certificate Validation vulnerability in Python Urllib3 1.17/1.18
Versions 1.17 and 1.18 of the Python urllib3 library suffer from a vulnerability that can cause them, in certain configurations, to not correctly validate TLS certificates.
network
high complexity
python CWE-295
3.7
2017-01-11 CVE-2015-8020 Information Exposure vulnerability in Netapp Clustered Data Ontap 8.0/8.3.1/8.3.2
Clustered Data ONTAP versions 8.0, 8.3.1, and 8.3.2 contain a default privileged account which under certain conditions can be used for unauthorized information disclosure.
network
high complexity
netapp CWE-200
3.7