Page 33 of 215 results (0.009 seconds)

CVSS: 4.9EPSS: 0%CPEs: 5EXPL: 0

Vulnerability in the Oracle Applications Manager component of Oracle E-Business Suite (subcomponent: OAM Client). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Applications Manager. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Applications Manager accessible data. CVSS v3.0 Base Score 4.9 (Confidentiality impacts). • http://www.oracle.com/technetwork/security-advisory/cpujan2017-2881727.html http://www.securityfocus.com/bid/95617 http://www.securitytracker.com/id/1037639 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 5.3EPSS: 0%CPEs: 7EXPL: 0

Unspecified vulnerability in the Oracle Common Applications Calendar component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote attackers to affect confidentiality via vectors related to Resources Module. Vulnerabilidad no especificada en el componente Oracle Common Applications Calendar en Oracle E-Business Suite 12.1.1 hasta la versión 12.1.3 y 12.2.3 hasta la versión 12.2.6 permite a atacantes remotos afectar la confidencialidad a través de vectores relacionados con Resources Module. • http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html http://www.securityfocus.com/bid/93764 http://www.securitytracker.com/id/1037038 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-284: Improper Access Control •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.1.3 allows local users to affect confidentiality via vectors related to AD Utilities. Vulnerabilidad no especificada en el componente Oracle Applications DBA en Oracle E-Business Suite 12.1.3 permite a usuarios locales afectar la confidencialidad a través de vectores relacionados con AD Utilities. • http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html http://www.securityfocus.com/bid/93769 http://www.securitytracker.com/id/1037038 • CWE-284: Improper Access Control •

CVSS: 6.5EPSS: 0%CPEs: 5EXPL: 0

Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.1.3 and 12.2.3 through 12.2.6 allows remote administrators to affect confidentiality and integrity via vectors related to AD Utilities, a different vulnerability than CVE-2016-5571. Vulnerabilidad no especificada en el componente Oracle Applications DBA en Oracle E-Business Suite 12.1.3 y 12.2.3 hasta la versión 12.2.6 permite a administradores remotos afectar la confidencialidad y la integridad a través de vectores relacionados con AD Utilities, una vulnerabilidad diferente a CVE-2016-5571. • http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html http://www.securityfocus.com/bid/93747 http://www.securitytracker.com/id/1037038 •

CVSS: 6.5EPSS: 0%CPEs: 4EXPL: 0

Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.2.3 through 12.2.6 allows remote administrators to affect confidentiality and integrity via vectors related to AD Utilities. Vulnerabilidad no especificada en el componente Oracle Applications DBA en Oracle E-Business Suite 12.2.3 hasta la versión 12.2.6 permite a administradores remotos afectar la confidencialidad y la integridad a través de vectores relacionados con AD Utilities. • http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html http://www.securityfocus.com/bid/93750 http://www.securitytracker.com/id/1037038 • CWE-284: Improper Access Control •