Vulnerability index

Browse CVEs

6,843 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Vm Server HIGH 7.8
CVE-2016-3991

Heap-based buffer overflow in the loadImage function in the tiffcrop tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of s…

Fix: after 4.0.6
Fix from $1,950 2016-09-21
Linux HIGH 8.6
CVE-2016-6250EPSS 6%

Integer overflow in the ISO9660 writer in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) or execute…

Fix: after 3.2.0
Fix from $1,950 2016-09-21
MySQL CRITICAL 9.8
CVE-2016-6662EPSS 68%

Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.27, and 10.1.x before 10.1.17;…

Fix: 5.5.51 / 10.0.27+
Fix from $2,300 2016-09-20
Linux MEDIUM 6.5
CVE-2016-5404

The cert_revoke command in FreeIPA does not check for the "revoke certificate" permission, which allows remote authenticated users to revoke arbitrar…

Patch available
Fix from $1,600 2016-09-07
Linux CRITICAL 9.8
CVE-2016-5408

Stack-based buffer overflow in the munge_other_line function in cachemgr.cgi in the squid package before 3.1.23-16.el6_8.6 in Red Hat Enterprise Linu…

Patch available
Fix from $2,300 2016-08-10
Linux MEDIUM 5.5
CVE-2016-6197

fs/overlayfs/dir.c in the OverlayFS filesystem implementation in the Linux kernel before 4.6 does not properly verify the upper dentry before proceed…

Fix: after 4.5.7
Fix from $1,600 2016-08-06
Linux MEDIUM 5.5
CVE-2016-5265

Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allow user-assisted remote attackers to bypass the Same Origin Policy, and conduct Unive…

Fix: after 47.0.1
Fix from $1,600 2016-08-05
Linux HIGH 8.8
CVE-2016-5258

Use-after-free vulnerability in the WebRTC socket thread in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allows remote attackers to e…

Fix: after 47.0.1
Fix from $1,950 2016-08-05
Linux HIGH 8.8
CVE-2016-5252

Stack-based buffer underflow in the mozilla::gfx::BasePoint4d function in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allows remote …

Fix: after 47.0.1
Fix from $1,950 2016-08-05
Glassfish Server MEDIUM 5.8
CVE-2016-5477

Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1 and 3.0.1 allows remote attackers to affect conf…

Patch available
Fix from $1,600 2016-07-21
Retail Integration Bus HIGH 7.6
CVE-2016-5476

Unspecified vulnerability in the Oracle Retail Integration Bus component in Oracle Retail Applications 13.0, 13.1, 13.2, 14.0, 14.1, and 15.0 allows …

Patch available
Fix from $1,950 2016-07-21
Retail Service Backbone HIGH 7.6
CVE-2016-5475

Unspecified vulnerability in the Oracle Retail Service Backbone component in Oracle Retail Applications 14.0, 14.1, and 15.0 allows remote authentica…

Patch available
Fix from $1,950 2016-07-21
Retail Service Backbone HIGH 8.8
CVE-2016-5474

Unspecified vulnerability in the Oracle Retail Service Backbone component in Oracle Retail Applications 14.0, 14.1, and 15.0 allows remote authentica…

Patch available
Fix from $1,950 2016-07-21
Peoplesoft Enterprise Peopletools HIGH 7.8
CVE-2016-5472

Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.54 and 8.55 allows local users to affect…

Patch available
Fix from $1,950 2016-07-21
Solaris MEDIUM 5.5
CVE-2016-5471

Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerabili…

Patch available
Fix from $1,600 2016-07-21
Peoplesoft Enterprise Peopletools MEDIUM 6.5
CVE-2016-5470

Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.54 and 8.55 allows remote attackers to a…

Patch available
Fix from $1,600 2016-07-21
Solaris MEDIUM 5.5
CVE-2016-5469

Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerabili…

Patch available
Fix from $1,600 2016-07-21
Siebel Ui Framework MEDIUM 5.4
CVE-2016-5468

Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, IP2014, IP2015, and IP2016 allows remote authentica…

Patch available
Fix from $1,600 2016-07-21
Peoplesoft Enterprise Scm Eprocurement MEDIUM 5.4
CVE-2016-5467

Unspecified vulnerability in the PeopleSoft Enterprise FSCM component in Oracle PeopleSoft Products 9.1 and 9.2 allows remote authenticated users to …

Patch available
Fix from $1,600 2016-07-21
Peoplesoft Enterprise Peopletools HIGH 8.2
CVE-2016-5465

Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote attacke…

Patch available
Fix from $1,950 2016-07-21
Siebel Core Server Framework MEDIUM 6.5
CVE-2016-5461

Unspecified vulnerability in the Siebel Core - Server Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, IP2014, IP2015, and IP2016 allows remote…

Patch available
Fix from $1,600 2016-07-21
Communications Eagle Application Processor MEDIUM 6.4
CVE-2016-5458

Unspecified vulnerability in the Oracle Communications EAGLE Application Processor component in Oracle Communications Applications 16.0 allows remote…

Patch available
Fix from $1,600 2016-07-21
Integrated Lights Out Manager Firmware HIGH 8.8
CVE-2016-5457

Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote authenticated users to affect co…

Patch available
Fix from $1,950 2016-07-21
Siebel Core Server Framework MEDIUM 5.3
CVE-2016-5456

Unspecified vulnerability in the Siebel Core - Server Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, IP2014, IP2015, and IP2016 allows remote…

Patch available
Fix from $1,600 2016-07-21
Communications Messaging Server MEDIUM 5.3
CVE-2016-5455

Unspecified vulnerability in the Oracle Communications Messaging Server component in Oracle Communications Applications 6.3, 7.0, and 8.0 allows remo…

Patch available
Fix from $1,600 2016-07-21
Solaris MEDIUM 6.4
CVE-2016-5454

Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect integrity and availability via vectors related to Verified Boot.

Patch available
Fix from $1,600 2016-07-21
Integrated Lights Out Manager Firmware CRITICAL 9.8
CVE-2016-5453

Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect confidential…

Patch available
Fix from $2,300 2016-07-21
Solaris MEDIUM 5.5
CVE-2016-5452

Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect confidentiality via vectors related to Verified Boot.

Patch available
Fix from $1,600 2016-07-21
Siebel Ui Framework HIGH 8.1
CVE-2016-5451

Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, IP2014, IP2015, and IP2016 allows remote authentica…

Patch available
Fix from $1,950 2016-07-21
Integrated Lights Out Manager Firmware HIGH 7.5
CVE-2016-5449

Unspecified vulnerability in the ILOM component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect availability…

Patch available
Fix from $1,950 2016-07-21