Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2678▼ 660 respecto a la semana anterior
Críticas / altas1266▼ 293 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
443 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6) | 0.41% | — | Oracle Applications DBA | 27/1/2017 | 17/6/2026 | Vulnerability in the Oracle Applications DBA component of Oracle E-Business Suite (subcomponent: Patching). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Applications DBA… | |
| Modificada | Media (4.9) | 1.4% | — | Oracle Applications Manager | 27/1/2017 | 17/6/2026 | Vulnerability in the Oracle Applications Manager component of Oracle E-Business Suite (subcomponent: OAM Client). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle… | |
| Modificada | Media (5.4) | 0.56% | — | Novell Identity ManagerNovell Identity Manager Identity Applications | 27/10/2016 | 17/6/2026 | XSS in NetIQ IDM 4.5 Identity Applications before 4.5.4 allows attackers able to change their username to inject arbitrary HTML code into the Role Assignment administrator HTML pages. | |
| Modificada | Media (5.3) | 1.8% | — | Oracle Common Applications | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Common Applications Calendar component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote attackers to affect confidentiality via vectors related to Resources Module. | |
| Modificada | Media (6.5) | 1.3% | — | Oracle Applications DBA | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.1.3 and 12.2.3 through 12.2.6 allows remote administrators to affect confidentiality and integrity via vectors related to AD Utilities, a different vulnerability than CVE-2016-5567. | |
| Modificada | Media (6.5) | 1.3% | — | Oracle Applications DBA | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.2.3 through 12.2.6 allows remote administrators to affect confidentiality and integrity via vectors related to AD Utilities. | |
| Modificada | Media (6.5) | 1.4% | — | Oracle Applications DBA | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.1.3 and 12.2.3 through 12.2.6 allows remote administrators to affect confidentiality and integrity via vectors related to AD Utilities, a different vulnerability than CVE-2016-5571. | |
| Modificada | Media (5.5) | 0.35% | — | Oracle Applications DBA | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.1.3 allows local users to affect confidentiality via vectors related to AD Utilities. | |
| Modificada | Crítica (9.8) | 2.6% | — | EMC Networker Module FOR Microsoft ApplicationsEMC Replication Manager | 5/10/2016 | 17/6/2026 | The client in EMC Replication Manager (RM) before 5.5.3.0_01-PatchHotfix, EMC Network Module for Microsoft 3.x, and EMC Networker Module for Microsoft 8.2.x before 8.2.3.6 allows remote RM servers to execute arbitrary commands by placing a crafted script in an SMB share. | |
| Modificada | Crítica (9.1) | 4.0% | — | Oracle Common Applications Calendar | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Common Applications Calendar component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via vectors related to Tasks. | |
| Modificada | Crítica (9.1) | 4.0% | — | Oracle Common Applications Calendar | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Common Applications Calendar component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via vectors related to Notes. | |
| Modificada | Media (5.9) | 3.1% | — | Oracle Applications Manager | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Applications Manager component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality via vectors related to Cookie Management. | |
| Modificada | Media (4.7) | 1.9% | — | Oracle WEB Applications Desktop Integrator | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Web Applications Desktop Integrator component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via vectors related to Application Service. | |
| Modificada | Alta (8.2) | 2.9% | — | Oracle WEB Applications Desktop Integrator | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Web Applications Desktop Integrator component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via vectors related to Application Service. | |
| Modificada | Media (6.9) | 1.2% | — | Oracle Applications Framework | 21/4/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via vectors related to OAF Core. | |
| Modificada | Alta (8.2) | 1.8% | — | Oracle Common Applications Calendar | 21/4/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Common Applications Calendar component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Tasks. | |
| Modificada | Media (4) | 1.2% | — | Oracle Common Applications | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Common Applications component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, and 12.1.3 allows remote authenticated users to affect integrity via vectors related to CRM User Management Framework. | |
| Modificada | Media (4) | 1.2% | — | Oracle Applications Manager | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Applications Manager component in Oracle E-Business Suite 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Oracle Diagnostics Interfaces. | |
| Modificada | Baja (1.9) | 0.38% | — | Oracle Retail Applications | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Retail Point-of-Service component in Oracle Retail Applications 13.4, 14.0, and 14.1 allows local users to affect confidentiality via vectors related to Mobile POS, a different vulnerability than CVE-2016-0434, CVE-2016-0436, and CVE-2016-0437. | |
| Modificada | Baja (1.9) | 0.38% | — | Oracle Retail Applications | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Retail Point-of-Service component in Oracle Retail Applications 13.4, 14.0, and 14.1 allows local users to affect confidentiality via vectors related to Mobile POS, a different vulnerability than CVE-2016-0434, CVE-2016-0436, and CVE-2016-0438. | |
| Modificada | Baja (1.9) | 0.38% | — | Oracle Retail Applications | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Retail Point-of-Service component in Oracle Retail Applications 13.4, 14.0, and 14.1 allows local users to affect confidentiality via vectors related to Mobile POS, a different vulnerability than CVE-2016-0434, CVE-2016-0437, and CVE-2016-0438. | |
| Modificada | Baja (3.3) | 0.37% | — | Oracle Retail Applications | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Retail Point-of-Service component in Oracle Retail Applications 13.4, 14.0, and 14.1 allows local users to affect confidentiality and integrity via vectors related to Mobile POS. | |
| Modificada | Baja (1.9) | 0.38% | — | Oracle Retail Applications | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in the Oracle Retail Point-of-Service component in Oracle Retail Applications 13.4, 14.0, and 14.1 allows local users to affect confidentiality via vectors related to Mobile POS, a different vulnerability than CVE-2016-0436, CVE-2016-0437, and CVE-2016-0438. | |
| Modificada | Media (6.4) | 1.8% | — | Oracle Retail Applications | 21/10/2015 | 17/6/2026 | Unspecified vulnerability in the Oracle Retail Open Commerce Platform component in Oracle Retail Applications 3.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Framework. | |
| Modificada | Alta (7.5) | 2.0% | — | Oracle Industry Applications | 21/10/2015 | 17/6/2026 | Unspecified vulnerability in the Oracle Utilities Work and Asset Management component in Oracle Industry Applications 1.9.1.1.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Add-On Applications. |