Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 5.3

    MEDIUM
    CVE-2016-5487

    Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect confidentiality, integrity, and availability via unknown vectors.... Read more

    Affected Products : solaris
    • EPSS Score: %0.05
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 5.5

    MEDIUM
    CVE-2016-5486

    Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows local users to affect confidentiality via vectors related to Core Services.... Read more

    Affected Products : sun_zfs_storage_appliance_kit
    • EPSS Score: %0.07
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 8.2

    HIGH
    CVE-2016-5482

    Unspecified vulnerability in the Oracle Commerce Guided Search component in Oracle Commerce 6.2.2, 6.3.0, 6.4.1.2, and 6.5.0 through 6.5.2 allows remote attackers to affect confidentiality and integrity via unknown vectors.... Read more

    Affected Products : commerce_guided_search
    • EPSS Score: %0.23
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 4.3

    MEDIUM
    CVE-2016-5481

    Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows remote attackers to affect confidentiality via vectors related to Core Services.... Read more

    Affected Products : sun_zfs_storage_appliance_kit
    • EPSS Score: %0.19
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 2.8

    LOW
    CVE-2016-5480

    Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect integrity via vectors related to Bash.... Read more

    Affected Products : solaris
    • EPSS Score: %0.14
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 4.3

    MEDIUM
    CVE-2016-5479

    Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.3.0, 11.4.0, and 12.0.1 allows remote authenticated users to affect confidentiality via vectors related to INFRA.... Read more

    Affected Products : flexcube_universal_banking
    • EPSS Score: %0.18
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 4.3

    MEDIUM
    CVE-2016-3562

    Unspecified vulnerability in the RDBMS Security and SQL*Plus components in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows remote administrators to affect confidentiality via vectors related to DBA.... Read more

    Affected Products : database_server
    • EPSS Score: %0.36
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2016-3551

    Unspecified vulnerability in the Oracle Web Services component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, 12.1.3.0.0, and 12.2.1.0.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAXWS Web S... Read more

    Affected Products : weblogic_server fusion_middleware
    • EPSS Score: %4.00
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 9.0

    HIGH
    CVE-2016-3505

    Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.3.0, and 12.2.1.0 allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to JavaServer Faces... Read more

    Affected Products : weblogic_server
    • EPSS Score: %1.99
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 6.8

    MEDIUM
    CVE-2016-3495

    Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: InnoDB.... Read more

    Affected Products : mysql
    • EPSS Score: %0.34
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 6.8

    MEDIUM
    CVE-2016-3492

    Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.... Read more

    • EPSS Score: %2.08
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 7.7

    HIGH
    CVE-2016-3473

    Unspecified vulnerability in the BI Publisher (formerly XML Publisher) component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, and 12.2.1.0.0 allows remote authenticated users to affect confidentiality via unknown vectors.... Read more

    Affected Products : business_intelligence_publisher
    • EPSS Score: %2.80
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 7.5

    HIGH
    CVE-2016-1000215

    Ruckus Wireless H500 web management interface denial of service... Read more

    Affected Products : wireless_h500
    • EPSS Score: %0.42
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 5.3

    MEDIUM
    CVE-2016-1000214

    Ruckus Wireless H500 web management interface authentication bypass... Read more

    Affected Products : wireless_h500
    • EPSS Score: %0.33
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 8.8

    HIGH
    CVE-2016-1000213

    Ruckus Wireless H500 web management interface CSRF... Read more

    Affected Products : wireless_h500
    • EPSS Score: %0.17
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 4.3

    MEDIUM
    CVE-2016-1000033

    Shotwell version 0.22.0 (and possibly other versions) is vulnerable to a TLS/SSL certification validation flaw resulting in a potential for man in the middle attacks.... Read more

    Affected Products : enterprise_linux shotwell
    • EPSS Score: %0.32
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 7.5

    HIGH
    CVE-2016-1000032

    TGCaptcha2 version 0.3.0 is vulnerable to a replay attack due to a missing nonce allowing attackers to use a single solved CAPTCHA multiple times.... Read more

    Affected Products : tgcaptcha2
    • EPSS Score: %0.58
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 9.8

    CRITICAL
    CVE-2016-1000031

    Apache Commons FileUpload before 1.3.3 DiskFileItem File Manipulation Remote Code Execution... Read more

    Affected Products : commons_fileupload
    • EPSS Score: %50.09
    • Published: Oct. 25, 2016
    • Modified: Apr. 12, 2025
  • 4.3

    MEDIUM
    CVE-2016-0377

    The Administrative Console in IBM WebSphere Application Server (WAS) 7.x before 7.0.0.43, 8.0.x before 8.0.0.13, and 8.5.x before 8.5.5.10 mishandles CSRFtoken cookies, which allows remote authenticated users to obtain sensitive information via unspecifie... Read more

    Affected Products : websphere_application_server
    • EPSS Score: %0.29
    • Published: Oct. 22, 2016
    • Modified: Apr. 12, 2025
  • 7.8

    HIGH
    CVE-2016-0328

    IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows local users to obtain administrator privileges for command execution via unspecified vectors.... Read more

    • EPSS Score: %0.14
    • Published: Oct. 22, 2016
    • Modified: Apr. 12, 2025
Showing 20 of 291806 Results