
CVE-2016-3467 – Oracle Patches 27 Vulnerabilities
https://notcve.org/view.php?id=CVE-2016-3467
20 Jul 2016 — Unspecified vulnerability in the Application Express component in Oracle Database Server before 5.0.4 allows remote attackers to affect availability via unknown vectors. Vulnerabilidad no especificada en el componente Application Express en Oracle Database Server en versiones anteriores a 5.0.4 permite a atacantes remotos afectar la disponiblidad a través de vectores desconocidos. A total of 27 vulnerabilities have been patched by Oracle. These affect eBusiness Suite R12.x and 11.5, Apex, Primavera, OBIEE, ... • https://packetstorm.news/files/id/137976 •

CVE-2008-1811
https://notcve.org/view.php?id=CVE-2008-1811
16 Apr 2008 — Unspecified vulnerability in Oracle Application Express 3.0.1 has unspecified impact and remote authenticated attack vectors related to flows_030000.wwv_execute_immediate, aka APEX01. NOTE: the previous information was obtained from the April 2008 CPU. Oracle has not commented on reliable researcher claims that APEX01 is for insufficient authorization checks for SQL commands in the run_ddl function in flows_030000.wwv_execute_immediate, allowing privilege escalation by certain non-DBA remote authenticated u... • http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=690 •

CVE-2008-1822
https://notcve.org/view.php?id=CVE-2008-1822
16 Apr 2008 — Unspecified vulnerability in the Oracle Application Express component in Oracle Application Express 3.0.1 has unknown impact and remote attack vectors, aka APEX02. Vulnerabilidad no especificada en el componente Oracle Application Express en Oracle Application Express 3.0.1 tiene impacto y vectores de ataque remotos, también conocido como APEX02. • http://secunia.com/advisories/29829 •