Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2016-04-21 CVE-2013-7449 Cryptographic Issues vulnerability in multiple products
The ssl_do_connect function in common/server.c in HexChat before 2.10.2, XChat, and XChat-GNOME does not verify that the server hostname matches a domain name in the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.
network
low complexity
canonical xchat hexchat-project CWE-310
6.5
2016-04-21 CVE-2016-3465 Unspecified vulnerability in Oracle Solaris 11.3
Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect availability via vectors related to ZFS.
local
low complexity
oracle
5.5
2016-04-21 CVE-2016-3464 Unspecified vulnerability in Oracle Flexcube Direct Banking 12.0.3
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote authenticated users to affect confidentiality via vectors related to Accounts.
network
low complexity
oracle
5.7
2016-04-21 CVE-2016-3463 Unspecified vulnerability in Oracle Flexcube Direct Banking 12.0.3
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote attackers to affect confidentiality and integrity via vectors related to Pre-Login.
network
low complexity
oracle
6.1
2016-04-21 CVE-2016-3462 Unspecified vulnerability in Oracle Solaris 11.3
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Network Configuration Service.
local
low complexity
oracle
5.5
2016-04-21 CVE-2016-3460 Unspecified vulnerability in Oracle Peoplesoft Enterprise Human Capital Management Eperformance 9.2
Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.2 allows remote authenticated users to affect confidentiality and integrity via vectors related to ePerformance.
network
low complexity
oracle
5.4
2016-04-21 CVE-2016-3457 Unspecified vulnerability in Oracle Peoplesoft Enterprise Human Capital Management Eperformance 9.2
Unspecified vulnerability in the PeopleSoft Enterprise HCM ePerformance component in Oracle PeopleSoft Products 9.2 allows remote authenticated users to affect confidentiality and integrity via vectors related to Security.
network
low complexity
oracle
4.6
2016-04-21 CVE-2016-3447 Unspecified vulnerability in Oracle Applications Framework
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via vectors related to OAF Core.
network
high complexity
oracle
6.9
2016-04-21 CVE-2016-3442 Unspecified vulnerability in Oracle Peoplesoft Enterprise Peopletools 8.53/8.54/8.55
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote authenticated users to affect confidentiality and integrity via vectors related to Portal.
network
low complexity
oracle
5.4
2016-04-21 CVE-2016-3435 Unspecified vulnerability in Oracle Peoplesoft Enterprise Peopletools 8.53/8.54/8.55
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote attackers to affect availability via vectors related to PIA Core Technology.
network
low complexity
oracle
4.7