Latest CVE Feed
-
4.3
MEDIUMCVE-2016-5479
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.3.0, 11.4.0, and 12.0.1 allows remote authenticated users to affect confidentiality via vectors related to INFRA.... Read more
Affected Products : flexcube_universal_banking- EPSS Score: %0.18
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-3562
Unspecified vulnerability in the RDBMS Security and SQL*Plus components in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows remote administrators to affect confidentiality via vectors related to DBA.... Read more
Affected Products : database_server- EPSS Score: %0.36
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-3551
Unspecified vulnerability in the Oracle Web Services component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, 12.1.3.0.0, and 12.2.1.0.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAXWS Web S... Read more
- EPSS Score: %4.00
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
9.0
HIGHCVE-2016-3505
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.3.0, and 12.2.1.0 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to JavaServer Faces... Read more
Affected Products : weblogic_server- EPSS Score: %1.99
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2016-3495
Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: InnoDB.... Read more
Affected Products : mysql- EPSS Score: %0.34
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2016-3492
Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.... Read more
- EPSS Score: %2.08
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
7.7
HIGHCVE-2016-3473
Unspecified vulnerability in the BI Publisher (formerly XML Publisher) component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, and 12.2.1.0.0 allows remote authenticated users to affect confidentiality via unknown vectors.... Read more
Affected Products : business_intelligence_publisher- EPSS Score: %2.80
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-1000215
Ruckus Wireless H500 web management interface denial of service... Read more
Affected Products : wireless_h500- EPSS Score: %0.42
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
5.3
MEDIUMCVE-2016-1000214
Ruckus Wireless H500 web management interface authentication bypass... Read more
Affected Products : wireless_h500- EPSS Score: %0.33
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-1000213
Ruckus Wireless H500 web management interface CSRF... Read more
Affected Products : wireless_h500- EPSS Score: %0.17
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-1000033
Shotwell version 0.22.0 (and possibly other versions) is vulnerable to a TLS/SSL certification validation flaw resulting in a potential for man in the middle attacks.... Read more
- EPSS Score: %0.32
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-1000032
TGCaptcha2 version 0.3.0 is vulnerable to a replay attack due to a missing nonce allowing attackers to use a single solved CAPTCHA multiple times.... Read more
Affected Products : tgcaptcha2- EPSS Score: %0.58
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-1000031
Apache Commons FileUpload before 1.3.3 DiskFileItem File Manipulation Remote Code Execution... Read more
Affected Products : commons_fileupload- EPSS Score: %50.09
- Published: Oct. 25, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-0377
The Administrative Console in IBM WebSphere Application Server (WAS) 7.x before 7.0.0.43, 8.0.x before 8.0.0.13, and 8.5.x before 8.5.5.10 mishandles CSRFtoken cookies, which allows remote authenticated users to obtain sensitive information via unspecifie... Read more
Affected Products : websphere_application_server- EPSS Score: %0.29
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-0328
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows local users to obtain administrator privileges for command execution via unspecified vectors.... Read more
Affected Products : security_guardium_database_activity_monitor- EPSS Score: %0.14
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-0326
IBM Rational Quality Manager (RQM) and Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.x before 4.0.7 iFix11, 5.x before 5.0.2 iFix17, and 6.x before 6.0.1 ifix3 allow remote authenticated users to execute arbitrary OS commands via a c... Read more
- EPSS Score: %0.89
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-0247
IBM Security Guardium 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows local users to obtain sensitive cleartext information via unspecified vectors, as demonstrated by password information.... Read more
- EPSS Score: %0.04
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2016-0246
Cross-site scripting (XSS) vulnerability in IBM Security Guardium 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.... Read more
- EPSS Score: %0.22
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-0242
IBM Security Guardium 10.x through 10.1 before p100 allows remote authenticated users to obtain sensitive information by reading an Application Error message.... Read more
- EPSS Score: %0.16
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-0241
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to spoof administrator accounts by sending a modified login request over HTTP.... Read more
Affected Products : security_guardium_database_activity_monitor- EPSS Score: %0.57
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025