Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2007-01-17 CVE-2007-0298 Remote File Include vulnerability in Dexxaboy Lunarpoll 1.0
PHP remote file inclusion vulnerability in show.php in LunarPoll, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the PollDir parameter.
network
dexxaboy
6.8
2007-01-17 CVE-2007-0297 Multiple vulnerability in Oracle January 2007 Security Update
Unspecified vulnerability in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.47.11 and 8.48.06 has unknown impact and attack vectors in PeopleTools, aka PSE03.
network
low complexity
oracle
4.0
2007-01-17 CVE-2007-0293 Multiple vulnerability in Oracle Enterprise Manager 10.1.0.5/10.2.0.1
Multiple unspecified vulnerabilities in Oracle Enterprise Manager 10.1.0.5 and 10.2.0.1 have unknown impact and attack vectors related to (1) Oracle Agent (EM03) and (2) EM04 and (3) EM05 in Enterprise Manager Console.
network
low complexity
oracle
6.4
2007-01-17 CVE-2007-0291 Multiple vulnerability in Oracle E-Business Suite 6.2.3
Unspecified vulnerability in Oracle E-Business Suite and Applications 6.2.3 has unknown impact and attack vectors related to Oracle Exchange, aka APPS02.
network
low complexity
oracle
4.0
2007-01-17 CVE-2007-0290 Multiple vulnerability in Oracle E-Business Suite 11.5.10.2
Multiple unspecified vulnerabilities in Oracle E-Business Suite and Applications 11.5.10CU2 have unknown impact and attack vectors related to (1) Application Object Library (APPS01), (2) Human Resources (APPS03), (3) Payables (APPS04), (4) Trading Community Architecture (APPS05), and (5) Web Applications Desktop Integrator (APPS06).
network
low complexity
oracle
5.5
2007-01-17 CVE-2007-0289 Multiple vulnerability in Oracle Application Server 9.0.4.2
Multiple unspecified vulnerabilities in Oracle Collaboration Suite 9.0.4.2 have unknown impact and attack vectors related to Oracle Containers for J2EE, aka (1) OC4J01, (2) OC4J05, and (3) OC4J06.
network
low complexity
oracle
6.4
2007-01-17 CVE-2007-0285 Multiple vulnerability in Oracle products
Unspecified vulnerability in Oracle Application Server 9.0.4.3, 10.1.2.0.2, and 10.1.2.2; Collaboration Suite 9.0.4.2 and 10.1.2; and E-Business Suite and Applications 11.5.10CU2 has unknown impact and attack vectors related to Oracle Reports Developer, aka REP01.
network
low complexity
oracle
5.0
2007-01-17 CVE-2007-0284 Multiple vulnerability in Oracle Application Server and Collaboration Suite
Multiple unspecified vulnerabilities in Oracle Application Server 9.0.4.3 and 10.1.2.0.0, and Collaboration Suite 9.0.4.2, have unknown impact and attack vectors related to Oracle Containers for J2EE, aka (1) OC4J03 and (2) OC4J04.
network
low complexity
oracle
6.4
2007-01-17 CVE-2007-0283 Multiple vulnerability in Oracle Application Server and Collaboration Suite
Unspecified vulnerability in Oracle Application Server 9.0.4.3 and Collaboration Suite 9.0.4.2 has unknown impact and attack vectors related to Oracle Containers for J2EE, aka OC4J02.
network
high complexity
oracle
4.0
2007-01-17 CVE-2007-0281 Multiple vulnerability in Oracle products
Multiple unspecified vulnerabilities in Oracle HTTP Server 9.0.1.5, 9.2.0.8, 10.1.0.5, and 10.2.0.3; Application Server 9.0.4.3, 10.1.2.0.0, 10.1.2.0.1, 10.1.2.0.2, 10.1.2.1, and 10.1.3.0; and Collaboration Suite 9.0.4.2 and 10.1.2; have unknown impact and attack vectors related to the Oracle HTTP Server, aka (1) OHS03 and (2) OHS04.
network
low complexity
oracle
5.0