Oracle Corporation

742 tracked vulnerabilities.

CVE-2017-10383 MEDIUM
Oracle Hospitality Guest Access 4.2.0 and 4.2.1 - Unauthenticated Exposure of Sensitive Information via HTTP
Oct 19, 2017
CVSS 5.3
EPSS 0.00
CVE-2017-10382 MEDIUM
Oracle PeopleSoft Products <8.57 - Info Disclosure
Oct 19, 2017
CVSS 4.7
EPSS 0.01
CVE-2017-10381 MEDIUM
Oracle PeopleSoft Products <8.57 - Info Disclosure
Oct 19, 2017
CVSS 6.1
EPSS 0.00
CVE-2017-10380 MEDIUM
Oracle Java Advanced Management Console 2.7 - Unauthenticated Data Manipulation and Information Disclosure via HTTP
Oct 19, 2017
CVSS 4.7
EPSS 0.01
CVE-2017-10378 MEDIUM
MySQL < 5.5.57, 5.6.37, 5.7.11 - Authenticated Denial of Service in Server Optimizer
Oct 19, 2017
CVSS 6.5
EPSS 0.00
CVE-2017-10375 MEDIUM
Oracle Hospitality Applications 4.2.0-4.2.1 - Info Disclosure
Oct 19, 2017
CVSS 4.6
EPSS 0.00
CVE-2017-10373 HIGH
Oracle PeopleSoft Enterprise PT PeopleTools 8.55-8.56 - Sensitive Information Exposure via Health Center
Oct 19, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-10372 HIGH
Oracle Hospitality Guest Access 4.2.0 and 4.2.1 - Authenticated Denial of Service and Data Manipulation via HTTP
Oct 19, 2017
CVSS 8.7
EPSS 0.00
CVE-2017-10370 MEDIUM
Oracle Hospitality Applications 4.2.0-4.2.1 - Privilege Escalation
Oct 19, 2017
CVSS 6.9
EPSS 0.00
CVE-2017-10369 HIGH
Oracle Virtual Directory <11.1.1.9.0 - Takeover
Oct 19, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-10368 MEDIUM
Oracle PeopleSoft Products 9.1.00-9.2.00 - Info Disclosure
Oct 19, 2017
CVSS 6.1
EPSS 0.00
CVE-2017-10367 MEDIUM
Oracle Hospitality Simphony <2.9 - Unauth RCE
Oct 19, 2017
CVSS 5.4
EPSS 0.00
CVE-2017-10366 CRITICAL
Oracle PeopleSoft Products <8.57 - RCE
Oct 19, 2017
CVSS 9.8
EPSS 0.64
CVE-2017-10365 LOW
Oracle MySQL Server <= 5.7.18 - Authenticated Partial Denial of Service and Data Manipulation in InnoDB
Oct 19, 2017
CVSS 3.8
EPSS 0.00
CVE-2017-10363 HIGH
Oracle FLEXCUBE Universal Banking <12.4.0 - RCE
Oct 19, 2017
CVSS 7.1
EPSS 0.01
CVE-2017-10362 HIGH
Oracle PeopleSoft Enterprise PeopleTools 8.54-8.56 - Unauthenticated DoS and Unauthorized Data Access via Sawbridge
Oct 19, 2017
CVSS 7.2
EPSS 0.01
CVE-2017-10361 MEDIUM
Oracle Hospitality Cruise Shipboard Property Management System 8.0.2.0 - Unauthorized Data Read and Partial DoS via HTTP
Oct 19, 2017
CVSS 6.4
EPSS 0.00
CVE-2017-10360 HIGH
Oracle WebCenter Content <12.2.1.2.0 - Info Disclosure
Oct 19, 2017
CVSS 8.2
EPSS 0.01
CVE-2017-10359 MEDIUM
Oracle Hyperion <11.1.2.4 - Unauthenticated RCE
Oct 19, 2017
CVSS 5.4
EPSS 0.00
CVE-2017-10358 MEDIUM
Oracle Hyperion Financial Reporting 11.1.2 - Authenticated Data Manipulation and Information Disclosure via HTTP
Oct 19, 2017
CVSS 6.4
EPSS 0.00
CVE-2017-10357 MEDIUM
Oracle JDK and JRE 6u161, 7u151, 8u144, 9 - Unauthenticated Partial Denial of Service via Serialization
Oct 19, 2017
CVSS 5.3
EPSS 0.01
CVE-2017-10356 MEDIUM
Oracle Java SE <9 - Unauthenticated RCE
Oct 19, 2017
CVSS 6.2
EPSS 0.01
CVE-2017-10355 MEDIUM
Oracle JDK 6u161, 7u151, 8u144, 9 and Java SE Embedded 8u144 - Unauthenticated Partial Denial of Service via Networking
Oct 19, 2017
CVSS 5.3
EPSS 0.06
CVE-2017-10354 HIGH
Oracle PeopleSoft Products 9.1.00 - Info Disclosure
Oct 19, 2017
CVSS 8.2
EPSS 0.02
CVE-2017-10353 HIGH
Oracle Hospitality Hotel Mobile 1.1 - Unauthorized Data Access and Partial Denial of Service via RESTAPI
Oct 19, 2017
CVSS 7.1
EPSS 0.01