CVE-2013-5766
https://notcve.org/view.php?id=CVE-2013-5766
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control EM Base Platform 10.2.0.5 and 11.1.0.1; EM DB Control 11.1.0.7, 11.2.0.2, and 11.2.0.3; and EM Plugin for DB 12.1.0.2 and 12.1.0.3 allows remote attackers to affect integrity via unknown vectors related to DB Performance Advisories/UIs. Vulnerabilidad no especificada en el componente Enterprise Manager Base Platform de Oracle Enterprise Manager Grid Control EM Base Platform 10.2.0.5 y 11.1.0.1; EM DB Control 11.1.0.7, 11.2.0.2, y 11.2.0.3; y EM Plugin para DB 12.1.0.2 y 12.1.0.3 permite a atacantes remotos afectar la integridad a través de vectores desconocidos relacionados con DB Performance Advisories/UIs. • http://secunia.com/advisories/55322 http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.html •
CVE-2013-3826
https://notcve.org/view.php?id=CVE-2013-3826
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.2, 11.2.0.3, and 12.1.0.1 allows remote attackers to affect confidentiality via unknown vectors. Vulnerabilidad no especificada en el componente Core RDBMS de Oracle Database Server 11.1.0.7, 11.2.0.2, 11.2.0.3, y 12.1.0.1 permite a atacantes remotos afectar la confidencialidad a través de vectores desconocidos. • http://secunia.com/advisories/55322 http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.html https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18671 •
CVE-2013-3791
https://notcve.org/view.php?id=CVE-2013-3791
Unspecified vulnerability in Enterprise Manager (EM) Base Platform 10.2.0.5 and EM DB Control 11.1.0.7 in Oracle Enterprise Manager Grid Control allows remote attackers to affect integrity via unknown vectors related to User Interface Framework. Vulnerabilidad no especificada en Enterprise Manager (EM) Plataforma Base v10.2.0.5 y EM DB Control v11.1.0.7 en Oracle Enterprise Manager Grid Control permite a atacantes remotos afectar la integridad a través de vectores desconocidos relacionados con el User Interface Framework. • http://jvn.jp/en/jp/JVN26103805/index.html http://jvndb.jvn.jp/jvndb/JVNDB-2013-003391 http://osvdb.org/95279 http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html http://www.securityfocus.com/bid/61213 http://www.securitytracker.com/id/1028795 https://exchange.xforce.ibmcloud.com/vulnerabilities/85666 •
CVE-2013-3771
https://notcve.org/view.php?id=CVE-2013-3771
Unspecified vulnerability in the Oracle executable component in Oracle Database Server 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows local users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-3760. Vulnerabilidad no especificada en el componente Oracle executable en Oracle Database Server v10.2.0.4, v10.2.0.5, v11.1.0.7, v11.2.0.2, y v11.2.0.3 y anteriores permite a atacantes remotos afectar la disponibilidad, confidencialidad e integridad mediante vectores desconocidos, una vulnerabilidad diferente a CVE-2013-3760. • http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00000.html http://osvdb.org/95266 http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html http://www.securityfocus.com/bid/61211 http://www.securitytracker.com/id/1028789 https://exchange.xforce.ibmcloud.com/vulnerabilities/85653 •
CVE-2013-3751 – Oracle Database Server SQL QName Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2013-3751
Unspecified vulnerability in the XML Parser component in Oracle Database Server 11.2.0.2, 11.2.0.3, and 12.1.0.1 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors. Vulnerabilidad no especificada en el componente XML Parser en Oracle Database Server v11.2.0.2 y v11.2.0.3 permite a usuarios remotos autenticados afectar la confidencialidad, integridad y disponibilidad mediante vectores desconocidos. This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Oracle Database. Authentication is not required to exploit this vulnerability. The specific flaw exists in the LpxFSMDom function. This function is responsible for parsing SQL commands through XML. • http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00000.html http://osvdb.org/95264 http://seclists.org/fulldisclosure/2014/Dec/23 http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html http://www.securityfocus.com/archive/1/534161/100/0/threaded http://www.securitytracker.com/id/1028789 http://www.vmware.com/security/advisories/VMSA-2014-0012.html https://exchange.xforce.ibmcloud.com •