Vulnerability index

Browse CVEs

13 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Jdk HIGH 8.3
CVE-2016-5573

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integr…

Patch available
Fix from $1,950 2016-10-25
Database MEDIUM 6.4
CVE-2016-5572

Unspecified vulnerability in the Kernel PDB component in Oracle Database Server 12.1.0.2 allows local users to affect confidentiality, integrity, and…

Patch available
Fix from $1,600 2016-10-25
MySQL CRITICAL 9.8
CVE-2016-6662EPSS 68%

Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.27, and 10.1.x before 10.1.17;…

Fix: 5.5.51 / 10.0.27+
Fix from $2,300 2016-09-20
Vm Server MEDIUM 6.7
CVE-2016-4962

The libxl device-handling in Xen 4.6.x and earlier allows local OS guest administrators to cause a denial of service (resource consumption or managem…

Mitigation only
Fix from $1,600 2016-06-07
Vm Server HIGH 8.4
CVE-2016-4480

The guest_walk_tables function in arch/x86/mm/guest_walk.c in Xen 4.6.x and earlier does not properly handle the Page Size (PS) page table entry bit …

Fix: after 4.6.1
Fix from $1,950 2016-05-18
Database Server HIGH 7.5
CVE-2012-1675EPSS 78%

The TNS Listener, as used in Oracle Database 11g 11.1.0.7, 11.2.0.2, and 11.2.0.3, and 10g 10.2.0.3, 10.2.0.4, and 10.2.0.5, as used in Oracle Fusion…

No fix yet
Fix from $1,950 2012-05-08
Database Server MEDIUM 5.1
CVE-2008-6065

Oracle Database Server 10.1, 10.2, and 11g grants directory WRITE permissions for arbitrary pathnames that are aliased in a CREATE OR REPLACE DIRECTO…

Mitigation only
Fix from $1,600 2009-02-05
Bea Product Suite MEDIUM 6.8
CVE-2008-5461

Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, 7.0, and SP7 allows remot…

Mitigation only
Fix from $1,600 2009-01-14
Bea Product Suite MEDIUM 6.8
CVE-2008-5462

Unspecified vulnerability in the WebLogic Portal component in BEA Product Suite 10.3, 10.2, 10.0 MP1, 9.2 MP3, and 8.1 SP6 allows remote attackers to…

No fix yet
Fix from $1,600 2009-01-14
Bea Product Suite MEDIUM 5.0
CVE-2008-5459

Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3 allows remote attackers to affect confidentiality via unknown ve…

No fix yet
Fix from $1,600 2009-01-14
Application Server Portal MEDIUM 5.0
CVE-2008-2138EPSS 16%

Oracle Application Server (OracleAS) Portal 10g allows remote attackers to bypass intended access restrictions and read the contents of /dav_portal/p…

No fix yet
Fix from $1,600 2008-05-12
Database Server MEDIUM 6.5
CVE-2004-1338

The triggers in Oracle 9i and 10g allow local users to gain privileges by using a sequence of partially privileged actions: using CCBKAPPLROWTRIG or …

Patch available
Fix from $1,600 2004-12-23
Application Server HIGH 7.5
CVE-2001-1371EPSS 12%

The default configuration of Oracle Application Server 9iAS 1.0.2.2 enables SOAP and allows anonymous users to deploy applications by default via urn…

Patch available
Fix from $1,950 2002-02-06