Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2008-10-15 CVE-2008-4558 Resource Management Errors vulnerability in Videolan VLC Media Player 0.9.2
Array index error in VLC media player 0.9.2 allows remote attackers to overwrite arbitrary memory and execute arbitrary code via an XSPF playlist file with a negative identifier tag, which passes a signed comparison.
network
videolan CWE-399
6.8
2008-10-14 CVE-2008-4013 Unspecified vulnerability in Oracle BEA Product Suite
Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.0 MP1, 9.2 MP3, 9.1, 9.0, and 8.1 SP6 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
oracle
6.8
2008-10-14 CVE-2008-4012 Unspecified vulnerability in Oracle Weblogic Workshop 8.1
Unspecified vulnerability in the WebLogic Workshop component in BEA Product Suite WLW 8.1SP5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to "some NetUI pageflows."
network
high complexity
oracle
5.1
2008-10-14 CVE-2008-4010 Unspecified vulnerability in Oracle BEA Product Suite
Unspecified vulnerability in the WebLogic Workshop component in BEA Product Suite 10.3, 10.2, 10.0 MP1, 9.2 MP3, and 8.1 SP6 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to "some NetUI tags."
network
oracle
6.8
2008-10-14 CVE-2008-4009 Unspecified vulnerability in Oracle BEA Product Suite 9.1
Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 9.1, when configuring multiple authorizers, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
high complexity
oracle
5.1
2008-10-14 CVE-2008-4005 Unspecified vulnerability in Oracle Database 11I 11.1.0.6
Unspecified vulnerability in the Oracle Application Express component in Oracle Database 11.1.0.6 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
network
high complexity
oracle
4.3
2008-10-14 CVE-2008-4003 Unspecified vulnerability in Oracle JD Edwards Enterpriseone and Peoplesoft Enterprise
Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.18 and 8.49.14 allows remote attackers to affect confidentiality via unknown vectors.
network
oracle
4.3
2008-10-14 CVE-2008-4001 Unspecified vulnerability in Oracle JD Edwards Enterpriseone EP and Peoplesoft Enterprise
Unspecified vulnerability in the PeopleSoft Enterprise Portal component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne EP 8.9 and EP 9.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
network
oracle
4.9
2008-10-14 CVE-2008-4000 Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.18 and 8.49.14 allows remote attackers to affect confidentiality and integrity via unknown vectors.
network
low complexity
jdedwards oracle
6.4
2008-10-14 CVE-2008-3998 Unspecified vulnerability in Oracle E-Business Suite 12.0.4
Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 12.0.4 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
network
oracle
4.9