Vulnerability index

Browse CVEs

174 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Glassfish Server HIGH 7.5
CVE-2017-1000029EPSS 8%

Oracle, GlassFish Server Open Source Edition 3.0.1 (build 22) is vulnerable to Local File Inclusion vulnerability, that makes it possible to include …

Mitigation only
Fix from $1,950 2017-07-17
Application Object Library MEDIUM 5.3
CVE-2017-3556

Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: File Management). Supported versions that …

Mitigation only
Fix from $1,600 2017-04-24
Peoplesoft Enterprise Peopletools MEDIUM 5.3
CVE-2017-3527

Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Fluid Core). Supported versions that ar…

Mitigation only
Fix from $1,600 2017-04-24
Peoplesoft Enterprise Peopletools MEDIUM 5.7
CVE-2017-3292

Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Integration Broker). Supported versions…

Patch available
Fix from $1,600 2017-01-27
Glassfish Server HIGH 7.3
CVE-2017-3250

Vulnerability in the Oracle GlassFish Server component of Oracle Fusion Middleware (subcomponent: Security). Supported versions that are affected are…

Patch available
Fix from $1,950 2017-01-27
Jdeveloper MEDIUM 5.8
CVE-2017-3255

Vulnerability in the Oracle JDeveloper component of Oracle Fusion Middleware (subcomponent: ADF Faces). Supported versions that are affected are 11.1…

Patch available
Fix from $1,600 2017-01-27
Data Integrator MEDIUM 5.7
CVE-2016-5602

Unspecified vulnerability in the Oracle Data Integrator component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, 12.1.3.0.0, 12.2.1.0.0, and 12.…

Patch available
Fix from $1,600 2016-10-25
Jdk MEDIUM 5.9
CVE-2016-5597

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality via vec…

Patch available
Fix from $1,600 2016-10-25
Common Applications MEDIUM 5.3
CVE-2016-5575

Unspecified vulnerability in the Oracle Common Applications Calendar component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12…

Patch available
Fix from $1,600 2016-10-25
Hospitality Opera 5 Property Services HIGH 7.7
CVE-2016-5565

Unspecified vulnerability in the Oracle Hospitality OPERA 5 Property Services component in Oracle Hospitality Applications 5.4.0.0 through 5.4.3.0, 5…

Patch available
Fix from $1,950 2016-10-25
Agile Product Lifecycle Management MEDIUM 5.3
CVE-2016-5524

Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect c…

Patch available
Fix from $1,600 2016-10-25
Agile Product Lifecycle Management MEDIUM 5.3
CVE-2016-5510

Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect c…

Patch available
Fix from $1,600 2016-10-25
Database Server MEDIUM 5.5
CVE-2016-5505

Unspecified vulnerability in the RDBMS Programmable Interface component in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows local users to affect …

Patch available
Fix from $1,600 2016-10-25
Discoverer HIGH 7.5
CVE-2016-5500

Unspecified vulnerability in the Oracle Discoverer component in Oracle Fusion Middleware 11.1.1.7.0 allows remote attackers to affect confidentiality…

Patch available
Fix from $1,950 2016-10-25
Discoverer HIGH 7.5
CVE-2016-5495

Unspecified vulnerability in the Oracle Discoverer component in Oracle Fusion Middleware 11.1.1.7.0 allows remote attackers to affect confidentiality…

Patch available
Fix from $1,950 2016-10-25
Business Intelligence Publisher HIGH 7.7
CVE-2016-3473EPSS 14%

Unspecified vulnerability in the BI Publisher (formerly XML Publisher) component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, and 12.2.1.0.0 a…

Patch available
Fix from $1,950 2016-10-25
Linux MEDIUM 5.5
CVE-2016-5265

Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allow user-assisted remote attackers to bypass the Same Origin Policy, and conduct Unive…

Fix: after 47.0.1
Fix from $1,600 2016-08-05
Linux MEDIUM 6.5
CVE-2016-0777EPSS 63%

The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensitive infor…

Fix: after 15.07
Fix from $1,600 2016-01-14
HTTP Server MEDIUM 5.3
CVE-2015-3195EPSS 39%

The ASN1_TFLG_COMBINE implementation in crypto/asn1/tasn_dec.c in OpenSSL before 0.9.8zh, 1.0.0 before 1.0.0t, 1.0.1 before 1.0.1q, and 1.0.2 before …

Fix: 0.9.8zh / 1.0.0t+
Fix from $1,600 2015-12-06
Enterprise Manager Database Control MEDIUM 5.0
CVE-2015-4735

Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Enterprise Manager Grid Control EM Base Platform 11.1.0.1…

Patch available
Fix from $1,600 2015-07-16
Database Server MEDIUM 6.8
CVE-2014-6477

Unspecified vulnerability in the JPublisher component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote au…

Patch available
Fix from $1,600 2014-11-23
Linux MEDIUM 6.4
CVE-2014-8566

The mod_auth_mellon module before 0.8.1 allows remote attackers to obtain sensitive information or cause a denial of service (segmentation fault) via…

Fix: after 0.8.0
Fix from $1,600 2014-11-15
Bea Product Suite MEDIUM 6.8
CVE-2008-5461

Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, 7.0, and SP7 allows remot…

Mitigation only
Fix from $1,600 2009-01-14
Database Server HIGH 7.1
CVE-2007-5554

Oracle allows remote attackers to obtain server memory contents via crafted packets, aka Oracle reference number 7892711. NOTE: as of 20071016, the …

Mitigation only
Fix from $1,950 2007-10-18