Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2016-0587 | 1 Oracle | 1 Peoplesoft Enterprise Peopletools | 2016-06-08 | 4.0 MEDIUM | N/A |
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote authenticated users to affect confidentiality via unknown vectors related to File Processing. | |||||
CVE-2016-0500 | 1 Oracle | 1 Retail Order Broker Cloud Service | 2016-06-08 | 7.5 HIGH | N/A |
Unspecified vulnerability in the Oracle Retail Order Broker Cloud Service component in Oracle Retail Applications 4.0 and 4.1 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to System Administration. | |||||
CVE-2016-0501 | 1 Oracle | 1 Secure Global Desktop | 2016-06-08 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in the Oracle Secure Global Desktop component in Oracle Virtualization 5.2 allows remote attackers to affect availability via vectors related to SGD Core. | |||||
CVE-2016-0460 | 1 Oracle | 1 Peoplesoft Enterprise Peopletools | 2016-06-08 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.55 allows remote attackers to affect integrity via unknown vectors related to Fluid Homepage and NavBar. | |||||
CVE-2016-0473 | 1 Oracle | 1 Peoplesoft Enterprise Peopletools | 2016-06-08 | 3.5 LOW | N/A |
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.54 and 8.55 allows remote authenticated users to affect integrity via unknown vectors related to Fluid Core. | |||||
CVE-2016-0474 | 1 Oracle | 1 Peoplesoft Enterprise Peopletools | 2016-06-08 | 3.5 LOW | N/A |
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.54 and 8.55 allows remote authenticated users to affect integrity via vectors related to PIA Core Technology. | |||||
CVE-2016-0463 | 1 Oracle | 1 Peoplesoft Enterprise Peopletools | 2016-06-08 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote attackers to affect confidentiality via unknown vectors related to Portal. | |||||
CVE-2016-0471 | 1 Oracle | 1 Peoplesoft Enterprise Peopletools | 2016-06-08 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53 and 8.54 allows remote attackers to affect confidentiality via unknown vectors related to Multichannel Framework. | |||||
CVE-2016-0453 | 1 Oracle | 1 Fusion Middleware | 2016-06-08 | 1.8 LOW | N/A |
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 3.1.2 allows remote attackers to affect integrity via unknown vectors related to Embedded Server. | |||||
CVE-2016-0441 | 1 Oracle | 1 Fusion Middleware | 2016-06-08 | 6.8 MEDIUM | N/A |
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 3.1.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Embedded Server. | |||||
CVE-2016-0438 | 1 Oracle | 1 Retail Applications | 2016-06-08 | 1.9 LOW | N/A |
Unspecified vulnerability in the Oracle Retail Point-of-Service component in Oracle Retail Applications 13.4, 14.0, and 14.1 allows local users to affect confidentiality via vectors related to Mobile POS, a different vulnerability than CVE-2016-0434, CVE-2016-0436, and CVE-2016-0437. | |||||
CVE-2014-9747 | 2 Debian, Freetype | 2 Debian Linux, Freetype | 2016-06-08 | 5.0 MEDIUM | 7.5 HIGH |
The t42_parse_encoding function in type42/t42parse.c in FreeType before 2.5.4 does not properly update the current position for immediates-only mode, which allows remote attackers to cause a denial of service (infinite loop) via a Type42 font. | |||||
CVE-2016-4502 | 1 Envirosys | 1 Esc 8832 Data Controller | 2016-06-07 | 5.0 MEDIUM | 7.5 HIGH |
Environmental Systems Corporation (ESC) 8832 Data Controller 3.02 and earlier allows remote attackers to bypass intended access restrictions and execute arbitrary functions via a modified parameter. | |||||
CVE-2016-4501 | 1 Envirosys | 1 Esc 8832 Data Controller | 2016-06-07 | 6.4 MEDIUM | 9.1 CRITICAL |
Environmental Systems Corporation (ESC) 8832 Data Controller 3.02 and earlier mishandles sessions, which allows remote attackers to bypass authentication and make arbitrary configuration changes via unspecified vectors. | |||||
CVE-2016-4505 | 1 Resourcedm | 1 Intuitive 650 Tdb Controller | 2016-06-07 | 9.0 HIGH | 8.8 HIGH |
Resource Data Management (RDM) Intuitive 650 TDB Controller devices before 2.1.24 allow remote authenticated users to modify arbitrary passwords via unspecified vectors. | |||||
CVE-2016-4506 | 1 Resourcedm | 1 Intuitive 650 Tdb Controller | 2016-06-07 | 6.0 MEDIUM | 8.0 HIGH |
Cross-site request forgery (CSRF) vulnerability on Resource Data Management (RDM) Intuitive 650 TDB Controller devices before 2.1.24 allows remote authenticated users to hijack the authentication of arbitrary users. | |||||
CVE-2016-1403 | 1 Cisco | 1 Ip Phone 8800 Series Firmware | 2016-06-07 | 7.2 HIGH | 7.8 HIGH |
CISCO IP 8800 phones with software 11.0.1 and earlier allow local users to gain privileges for OS command execution via crafted CLI commands, aka Bug ID CSCuz03005. | |||||
CVE-2016-1211 | 1 Epoch | 1 Web Mailing List | 2016-06-07 | 4.3 MEDIUM | 6.1 MEDIUM |
Cross-site scripting (XSS) vulnerability in Epoch Web Mailing List 0.31 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |||||
CVE-2016-3944 | 1 Lenovo | 1 Accelerator Application | 2016-06-07 | 9.3 HIGH | 7.5 HIGH |
UpdateAgent in Lenovo Accelerator Application allows man-in-the-middle attackers to execute arbitrary code by spoofing an update response from susapi.lenovomm.com. | |||||
CVE-2016-1212 | 1 Futomi | 1 Mp Form Mail Cgi | 2016-06-06 | 4.0 MEDIUM | 2.7 LOW |
Directory traversal vulnerability in futomi MP Form Mail CGI Professional Edition 3.2.3 and earlier allows remote authenticated administrators to read arbitrary files via unspecified vectors. |