VRT 391,192 CVEs tracked · 15,442 in RASP scope · data as of 18 hours ago
Reset
More filters (1)
Columns
Advisory: Oracle Critical Patch Update October 2016
Overview 16 matches · 4 in RASP scope · 1 protected · 0 KEV · 0 public PoC · 0 CISA SSVC · 0 EPSS ≥ 0.5 · 0 disputed
16matches 4in RASP scope25.0% 1protected6.2% 0KEV0.0% 0public PoC0.0% 0CISA SSVC0.0% 0EPSS ≥ 0.50.0% 0disputed0.0%
Critical 0 0.0% High 0 0.0% Medium 0 0.0% Low 16 100.0% None 0 0.0% Unknown 0 0.0%
Protected by RASP 0 0.0% Rule in development 0 0.0% Mitigation candidate 0 0.0% No exploit published 0 0.0% No fix identified 3 18.8% Mitigated by environment configuration 1 6.2% Queued for review 0 0.0% Not applicable 9 56.2% Out of RASP scope 3 18.8% Rejected 0 0.0%
blocked by ARMR today 1 6.2% not blocked 15 93.8% not established 0 0.0% unrecorded 0 0.0%
Exploited in the wild 0 0.0% Working exploit published 0 0.0% Proof of concept only 0 0.0% Forecast only 0 0.0% No public exploit 16 100.0%
split by peak 16 / month
Unknown: 0None: 0Low: 16Medium: 0High: 0Critical: 0 Rejected: 0Out of RASP scope: 3Not applicable: 9Queued for review: 0Mitigated by environment configuration: 1No fix identified: 3No exploit published: 0Mitigation candidate: 0Rule in development: 0Protected by RASP: 0 unrecorded: 0not established: 0not blocked: 15blocked by ARMR today: 1 No public exploit: 16Forecast only: 0Proof of concept only: 0Working exploit published: 0Exploited in the wild: 0 October 2016: 16 CVEs
Oct 16
16 matches CSV JSON
CVE Severity Published Status Exploitation Description
CVE-2016-8288 Low 2016-10-25 Not applicable No public exploit Unspecified vulnerability in Oracle MySQL 5.6.30 and earlier and 5.7.12 and earlier allows remote authenticated users to affect integrity via vectors related to Server: InnoDB Plugin.
CVE-2016-8286 Low 2016-10-25 Not applicable No public exploit Unspecified vulnerability in Oracle MySQL 5.7.14 and earlier allows remote authenticated users to affect confidentiality via vectors related to Server: Security: Privileges.
CVE-2016-8284 Low 2016-10-25 Not applicable No public exploit Unspecified vulnerability in Oracle MySQL 5.6.31 and earlier and 5.7.13 and earlier allows local users to affect availability via vectors related to Server: Replication.
CVE-2016-5618 Low 2016-10-25 No fix identified No public exploit Unspecified vulnerability in the Oracle Data Integrator component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, 12.1.2.0.0, 12.1.3.0.0, 12.2.1.0.0, and 12.2.1.1.0 allows remote authenticated users to affect confidentiality via vectors related to Code Generation Engine.
CVE-2016-5615 Low 2016-10-25 Not applicable No public exploit Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Lynx.
CVE-2016-5561 Low 2016-10-25 Not applicable No public exploit Unspecified vulnerability in Oracle Sun Solaris 11.3 allows remote attackers to affect availability via vectors related to IKE.
CVE-2016-5542 Low 2016-10-25 Mitigated by environment configuration No public exploit Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to Libraries.
CVE-2016-5525 Low 2016-10-25 Not applicable No public exploit Unspecified vulnerability in the Solaris Cluster component in Oracle Sun Systems Products Suite 3.3 and 4.3 allows local users to affect integrity via vectors related to Cluster check files.
CVE-2016-5508 Low 2016-10-25 Not applicable No public exploit Unspecified vulnerability in the Solaris Cluster component in Oracle Sun Systems Products Suite 4.3 allows local users to affect confidentiality via vectors related to Cluster Geo.
CVE-2016-5506 Low 2016-10-25 No fix identified No public exploit Unspecified vulnerability in the Oracle Identity Manager component in Oracle Fusion Middleware allows local users to affect confidentiality and integrity via vectors related to App Server.
CVE-2016-5499 Low 2016-10-25 Out of RASP scope No public exploit Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows local users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2016-5498.
CVE-2016-5498 Low 2016-10-25 Out of RASP scope No public exploit Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows local users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2016-5499.
CVE-2016-5490 Low 2016-10-25 No fix identified No public exploit Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.4.0 allows local users to affect confidentiality via vectors related to INFRA.
CVE-2016-5481 Low 2016-10-25 Not applicable No public exploit Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows remote attackers to affect confidentiality via vectors related to Core Services.
CVE-2016-5480 Low 2016-10-25 Not applicable No public exploit Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect integrity via vectors related to Bash.
CVE-2016-3562 Low 2016-10-25 Out of RASP scope No public exploit Unspecified vulnerability in the RDBMS Security and SQL*Plus components in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows remote administrators to affect confidentiality via vectors related to DBA.