LiveActive security incident?Get immediate response
CVE archive

January 2016

Browse CVE records published in January 2016, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 1112 matching CVEs · Page 19 of 23.

Unknown · CVSS Not scored

CVE-2016-0551: Unspecified vulnerability in the Oracle Customer Intelligence component in Oracle E-Business Suite 11.5.10....

Unspecified vulnerability in the Oracle Customer Intelligence component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2016-0545, CVE-2016-0552, CVE-2016-0559, and CVE-2016-0560.

Published Jan 21, 2016 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2016-0560: Unspecified vulnerability in the Oracle Customer Intelligence component in Oracle E-Business Suite 11.5.10....

Unspecified vulnerability in the Oracle Customer Intelligence component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2016-0545, CVE-2016-0551, CVE-2016-0552, and CVE-2016-0559.

Published Jan 21, 2016 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2016-0552: Unspecified vulnerability in the Oracle Customer Intelligence component in Oracle E-Business Suite 11.5.10....

Unspecified vulnerability in the Oracle Customer Intelligence component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2016-0545, CVE-2016-0551, CVE-2016-0559, and CVE-2016-0560.

Published Jan 21, 2016 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2016-0559: Unspecified vulnerability in the Oracle Customer Intelligence component in Oracle E-Business Suite 11.5.10....

Unspecified vulnerability in the Oracle Customer Intelligence component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2016-0545, CVE-2016-0551, CVE-2016-0552, and CVE-2016-0560.

Published Jan 21, 2016 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2016-0489: Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Gr...

Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Grid Control 12.4.0.2 and 12.5.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Test Manager for Web Apps. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a directory traversal vulnerability in the ActionServlet servlet, which allows remote authenticated users to upload and execute arbitrary files via directory traversal sequences in the tempfilename parameter in a ReportImage action.

Published Jan 21, 2016 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2016-0484: Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Gr...

Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Grid Control 12.4.0.2 and 12.5.0.2 allows remote attackers to affect confidentiality via unknown vectors related to Test Manager for Web Apps. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a directory traversal vulnerability in the DownloadServlet servlet, which allows remote attackers to read arbitrary files via directory traversal sequences in the scriptPath parameter.

Published Jan 21, 2016 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2016-0546: Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB bef...

Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Client. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that these are multiple buffer overflows in the mysqlshow tool that allow remote database servers to have unspecified impact via a long table or database name.

Published Jan 21, 2016 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2016-0490: Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Gr...

Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Grid Control 12.4.0.2 and 12.5.0.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Test Manager for Web Apps, a different vulnerability than CVE-2016-0487. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a directory traversal vulnerability in the UploadServlet servlet, which allows remote attackers to upload and execute arbitrary files via directory traversal sequences in a filename header.

Published Jan 21, 2016 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2016-0530: Unspecified vulnerability in the Oracle Customer Interaction History component in Oracle E-Business Suite 1...

Unspecified vulnerability in the Oracle Customer Interaction History component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via vectors related to User GUI, a different vulnerability than CVE-2016-0527, CVE-2016-0528, and CVE-2016-0529.

Published Jan 21, 2016 · Updated Aug 5, 2024