Vulnerability index

Browse CVEs

6,843 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Weblogic Server MEDIUM 5.3
CVE-2016-3445

Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0 and 12.1.3.0 allows remote attackers to affect…

Patch available
Fix from $1,600 2016-07-21
Retail Integration Bus CRITICAL 9.8
CVE-2016-3444EPSS 5%

Unspecified vulnerability in the Oracle Retail Integration Bus component in Oracle Retail Applications 13.0, 13.1, 13.2, 14.0, 14.1, and 15.0 allows …

Patch available
Fix from $2,300 2016-07-21
MySQL HIGH 7.7
CVE-2016-3440

Unspecified vulnerability in Oracle MySQL 5.7.11 and earlier allows remote authenticated users to affect availability via vectors related to Server: …

Fix: after 5.7.11
Fix from $1,950 2016-07-21
Business Intelligence MEDIUM 5.4
CVE-2016-3433

Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 11.1.1.7.0 and 11.1.1.9.0 allo…

Patch available
Fix from $1,600 2016-07-21
Business Intelligence Publisher MEDIUM 5.4
CVE-2016-3432

Unspecified vulnerability in the BI Publisher (formerly XML Publisher) component in Oracle Fusion Middleware 11.1.1.7.0 and 11.1.1.9.0 allows remote …

Patch available
Fix from $1,600 2016-07-21
Documaker HIGH 8.8
CVE-2016-0635EPSS 5%

Unspecified vulnerability in the Enterprise Manager Ops Center component in Oracle Enterprise Manager Grid Control 12.1.4, 12.2.2, and 12.3.2; the Or…

Fix: after 12.5
Fix from $1,950 2016-07-21
Linux HIGH 8.1
CVE-2016-5385EPSS 50%

PHP through 7.0.8 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect applications from the presen…

Fix: 5.5.38 / 5.6.24+
Fix from $1,950 2016-07-19
Linux MEDIUM 5.5
CVE-2016-4470

The key_reject_and_link function in security/keys/key.c in the Linux kernel through 4.6.3 does not ensure that a certain data structure is initialize…

Fix: after 4.6.3
Fix from $1,600 2016-06-27
Linux CRITICAL 9.8
CVE-2016-5118EPSS 50%

The OpenBlob function in blob.c in GraphicsMagick before 1.3.24 and ImageMagick allows remote attackers to execute arbitrary code via a | (pipe) char…

Fix: after 1.3.23
Fix from $2,300 2016-06-10
Vm Server MEDIUM 6.7
CVE-2016-4962

The libxl device-handling in Xen 4.6.x and earlier allows local OS guest administrators to cause a denial of service (resource consumption or managem…

Mitigation only
Fix from $1,600 2016-06-07
Vm Server HIGH 8.4
CVE-2016-4480

The guest_walk_tables function in arch/x86/mm/guest_walk.c in Xen 4.6.x and earlier does not properly handle the Page Size (PS) page table entry bit …

Fix: after 4.6.1
Fix from $1,950 2016-05-18
MySQL MEDIUM 5.9
CVE-2015-3152EPSS 7%

Oracle MySQL before 5.7.3, Oracle MySQL Connector/C (aka libmysqlclient) before 6.1.3, and MariaDB before 5.5.44 use the --ssl option to mean that SS…

Fix: 5.5.44 / 10.0.20+
Fix from $1,600 2016-05-16
Linux HIGH 7.5
CVE-2016-4556EPSS 23%

Double free vulnerability in Esi.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via a…

Patch available
Fix from $1,950 2016-05-10
Linux HIGH 8.6
CVE-2016-4554EPSS 39%

mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attack…

Fix: after 3.5.17
Fix from $1,950 2016-05-10
Field Service CRITICAL 9.1
CVE-2016-3466

Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affe…

Mitigation only
Fix from $2,300 2016-04-21
Solaris MEDIUM 5.5
CVE-2016-3465

Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect availability via vectors related to ZFS.

Patch available
Fix from $1,600 2016-04-21
Flexcube Direct Banking MEDIUM 5.7
CVE-2016-3464

Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote authenticated us…

Mitigation only
Fix from $1,600 2016-04-21
Flexcube Direct Banking MEDIUM 6.1
CVE-2016-3463

Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote attackers to aff…

Mitigation only
Fix from $1,600 2016-04-21
Solaris MEDIUM 5.5
CVE-2016-3462

Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Network Configuration Service.

Mitigation only
Fix from $1,600 2016-04-21
Mysql Enterprise Monitor HIGH 7.2
CVE-2016-3461

Unspecified vulnerability in the MySQL Enterprise Monitor component in Oracle MySQL 3.0.25 and earlier and 3.1.2 and earlier allows remote administra…

No fix yet
Fix from $1,950 2016-04-21
Peoplesoft Enterprise Human Capital Management Eperformance MEDIUM 5.4
CVE-2016-3460

Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.2 allows remote authenticated users to affect co…

Mitigation only
Fix from $1,600 2016-04-21
Complex Maintenance Repair And Overhaul HIGH 8.2
CVE-2016-3456

Unspecified vulnerability in the Oracle Complex Maintenance, Repair, and Overhaul component in Oracle Supply Chain Products Suite 12.1.1, 12.1.2, and…

Mitigation only
Fix from $1,950 2016-04-21
Outside In Technology HIGH 8.6
CVE-2016-3455

Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.5.0, 8.5.1, and 8.5.2 allows remote attackers t…

Mitigation only
Fix from $1,950 2016-04-21
Database CRITICAL 9.0
CVE-2016-3454

Unspecified vulnerability in the Java VM component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote attackers to affect confi…

Mitigation only
Fix from $2,300 2016-04-21
Jdk HIGH 8.3
CVE-2016-3449

Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect confidentiality, integrity, and availability via …

Mitigation only
Fix from $1,950 2016-04-21
Applications Framework MEDIUM 6.9
CVE-2016-3447

Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote …

Mitigation only
Fix from $1,600 2016-04-21
Jdk CRITICAL 9.6
CVE-2016-3443EPSS 5%

Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect confidentiality, integrity, and availability via …

Mitigation only
Fix from $2,300 2016-04-21
Peoplesoft Enterprise Peopletools MEDIUM 5.4
CVE-2016-3442

Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote authent…

Mitigation only
Fix from $1,600 2016-04-21
Solaris HIGH 7.8
CVE-2016-3441

Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect confidentiality, integrity, and availability via vectors rel…

Patch available
Fix from $1,950 2016-04-21
Configurator HIGH 8.2
CVE-2016-3438

Unspecified vulnerability in the Oracle Configurator component in Oracle Supply Chain Products Suite 12.0.6, 12.1, and 12.2 allows remote attackers t…

No fix yet
Fix from $1,950 2016-04-21