Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.3
CVE-2016-3445
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0 and 12.1.3.0 allows remote attackers to affect…
Weblogic Server
Patch available
CRITICAL 9.8
CVE-2016-3444EPSS 5%
Unspecified vulnerability in the Oracle Retail Integration Bus component in Oracle Retail Applications 13.0, 13.1, 13.2, 14.0, 14.1, and 15.0 allows …
Retail Integration Bus
Patch available
HIGH 7.7
CVE-2016-3440
Unspecified vulnerability in Oracle MySQL 5.7.11 and earlier allows remote authenticated users to affect availability via vectors related to Server: …
MySQL
after 5.7.11
MEDIUM 5.4
CVE-2016-3433
Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 11.1.1.7.0 and 11.1.1.9.0 allo…
Business Intelligence
Patch available
MEDIUM 5.4
CVE-2016-3432
Unspecified vulnerability in the BI Publisher (formerly XML Publisher) component in Oracle Fusion Middleware 11.1.1.7.0 and 11.1.1.9.0 allows remote …
Business Intelligence Publisher
Patch available
HIGH 8.8
CVE-2016-0635EPSS 5%
Unspecified vulnerability in the Enterprise Manager Ops Center component in Oracle Enterprise Manager Grid Control 12.1.4, 12.2.2, and 12.3.2; the Or…
Documaker
after 12.5
HIGH 8.1
CVE-2016-5385EPSS 50%
PHP through 7.0.8 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect applications from the presen…
Linux
5.5.38 / 5.6.24+
MEDIUM 5.5
CVE-2016-4470
The key_reject_and_link function in security/keys/key.c in the Linux kernel through 4.6.3 does not ensure that a certain data structure is initialize…
Linux
after 4.6.3
CRITICAL 9.8
CVE-2016-5118EPSS 50%
The OpenBlob function in blob.c in GraphicsMagick before 1.3.24 and ImageMagick allows remote attackers to execute arbitrary code via a | (pipe) char…
Linux
after 1.3.23
MEDIUM 6.7
CVE-2016-4962
The libxl device-handling in Xen 4.6.x and earlier allows local OS guest administrators to cause a denial of service (resource consumption or managem…
Vm Server
Mitigation only
HIGH 8.4
CVE-2016-4480
The guest_walk_tables function in arch/x86/mm/guest_walk.c in Xen 4.6.x and earlier does not properly handle the Page Size (PS) page table entry bit …
Vm Server
after 4.6.1
MEDIUM 5.9
CVE-2015-3152EPSS 7%
Oracle MySQL before 5.7.3, Oracle MySQL Connector/C (aka libmysqlclient) before 6.1.3, and MariaDB before 5.5.44 use the --ssl option to mean that SS…
MySQL
5.5.44 / 10.0.20+
HIGH 7.5
CVE-2016-4556EPSS 23%
Double free vulnerability in Esi.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via a…
Linux
Patch available
HIGH 8.6
CVE-2016-4554EPSS 39%
mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attack…
Linux
after 3.5.17
CRITICAL 9.1
CVE-2016-3466
Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affe…
Field Service
Mitigation only
MEDIUM 5.5
CVE-2016-3465
Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect availability via vectors related to ZFS.
Solaris
Patch available
MEDIUM 5.7
CVE-2016-3464
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote authenticated us…
Flexcube Direct Banking
Mitigation only
MEDIUM 6.1
CVE-2016-3463
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote attackers to aff…
Flexcube Direct Banking
Mitigation only
MEDIUM 5.5
CVE-2016-3462
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Network Configuration Service.
Solaris
Mitigation only
HIGH 7.2
CVE-2016-3461
Unspecified vulnerability in the MySQL Enterprise Monitor component in Oracle MySQL 3.0.25 and earlier and 3.1.2 and earlier allows remote administra…
Mysql Enterprise Monitor
No fix yet
MEDIUM 5.4
CVE-2016-3460
Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.2 allows remote authenticated users to affect co…
Peoplesoft Enterprise Human Capital Management Eperformance
Mitigation only
HIGH 8.2
CVE-2016-3456
Unspecified vulnerability in the Oracle Complex Maintenance, Repair, and Overhaul component in Oracle Supply Chain Products Suite 12.1.1, 12.1.2, and…
Complex Maintenance Repair And Overhaul
Mitigation only
HIGH 8.6
CVE-2016-3455
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.5.0, 8.5.1, and 8.5.2 allows remote attackers t…
Outside In Technology
Mitigation only
CRITICAL 9.0
CVE-2016-3454
Unspecified vulnerability in the Java VM component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote attackers to affect confi…
Database
Mitigation only
HIGH 8.3
CVE-2016-3449
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect confidentiality, integrity, and availability via …
Jdk
Mitigation only
MEDIUM 6.9
CVE-2016-3447
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote …
Applications Framework
Mitigation only
CRITICAL 9.6
CVE-2016-3443EPSS 5%
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect confidentiality, integrity, and availability via …
Jdk
Mitigation only
MEDIUM 5.4
CVE-2016-3442
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote authent…
Peoplesoft Enterprise Peopletools
Mitigation only
HIGH 7.8
CVE-2016-3441
Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect confidentiality, integrity, and availability via vectors rel…
Solaris
Patch available
HIGH 8.2
CVE-2016-3438
Unspecified vulnerability in the Oracle Configurator component in Oracle Supply Chain Products Suite 12.0.6, 12.1, and 12.2 allows remote attackers t…
Configurator
No fix yet