Total
29624 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2010-2524 | 4 Canonical, Linux, Suse and 1 more | 5 Ubuntu Linux, Linux Kernel, Suse Linux Enterprise Desktop and 2 more | 2024-11-21 | 4.6 MEDIUM | 7.8 HIGH |
The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCALL is enabled, relies on a user's keyring for the dns_resolver upcall in the cifs.upcall userspace helper, which allows local users to spoof the results of DNS queries and perform arbitrary CIFS mounts via vectors involving an add_key call, related to a "cache stuffing" issue and MS-DFS referrals. | |||||
CVE-2010-2518 | 1 Ibm | 4 Filenet P8 Business Process Manager, Filenet P8 Content Manager, P8 Content Engine and 1 more | 2024-11-21 | 7.5 HIGH | N/A |
Unspecified vulnerability in the P8 Content Engine (P8CE) 4.5.1 before FP3 and the P8 Content Search Engine (P8CSE) before 4.5.0 FP3 and 4.5.1 before FP1, as used in IBM FileNet P8 Content Manager (CM) and FileNet P8 Business Process Manager (BPM), allows remote attackers to gain privileges via unknown vectors. NOTE: some of these details are obtained from third party information. | |||||
CVE-2010-2517 | 1 Ibm | 1 Rational Clearquest | 2024-11-21 | 7.5 HIGH | N/A |
Multiple unspecified vulnerabilities in IBM Rational ClearQuest before 7.1.1.02 have unknown impact and attack vectors, as demonstrated by an AppScan report. | |||||
CVE-2010-2421 | 1 Opera | 1 Opera Browser | 2024-11-21 | 10.0 HIGH | N/A |
Multiple unspecified vulnerabilities in Opera before 10.54 have unknown impact and attack vectors related to (1) "extremely severe," (2) "highly severe," (3) "moderately severe," and (4) "less severe" issues. | |||||
CVE-2010-2420 | 1 Fenrir-inc | 2 Activegeckobrowser, Sleipnir | 2024-11-21 | 6.8 MEDIUM | N/A |
Multiple unspecified vulnerabilities in Fenrir Inc. ActiveGeckoBrowser 1.0.0 and 1.0.5 alpha, a module for the Sleipnir web browser, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors related to the Gecko engine. | |||||
CVE-2010-2419 | 1 Oracle | 1 Database Server | 2024-11-21 | 6.5 MEDIUM | N/A |
Unspecified vulnerability in the Java Virtual Machine component in Oracle Database Server 10.1.0.5, 10.2.0.4, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors. | |||||
CVE-2010-2418 | 1 Oracle | 1 E-business Suite | 2024-11-21 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the Oracle Territory Management component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors. | |||||
CVE-2010-2417 | 1 Oracle | 1 Supply Chain Products Suite | 2024-11-21 | 4.0 MEDIUM | N/A |
Unspecified vulnerability in the Agile PLM component in Oracle Supply Chain Products Suite 9.3.0.0 allows remote authenticated users to affect integrity via unknown vectors. | |||||
CVE-2010-2416 | 1 Oracle | 1 E-business Suite | 2024-11-21 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the Oracle E-Business Intelligence component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors. | |||||
CVE-2010-2415 | 1 Oracle | 1 Database Server | 2024-11-21 | 4.9 MEDIUM | N/A |
Unspecified vulnerability in the Change Data Capture component in Oracle Database Server 10.1.0.5, 10.2.0.4, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect confidentiality and integrity, related to DBMS_CDC_PUBLISH. | |||||
CVE-2010-2414 | 1 Oracle | 1 Sun Products Suite | 2024-11-21 | 2.6 LOW | N/A |
Unspecified vulnerability in the (1) Sun Convergence 1 and (2) Sun Java Communications Suite 7 components in Oracle Sun Products Suite 1.0 and 7.0 allows remote attackers to affect confidentiality via unknown vectors. | |||||
CVE-2010-2413 | 1 Oracle | 1 Fusion Middleware | 2024-11-21 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the BI Publisher component in Oracle Fusion Middleware 10.1.3.3.2 and 10.1.3.4.1 allows remote attackers to affect integrity via unknown vectors. | |||||
CVE-2010-2412 | 1 Oracle | 1 Database Server | 2024-11-21 | 5.5 MEDIUM | N/A |
Unspecified vulnerability in the OLAP component in Oracle Database Server 11.1.0.7 allows remote authenticated users to affect confidentiality and integrity via unknown vectors. | |||||
CVE-2010-2411 | 1 Oracle | 1 Database Server | 2024-11-21 | 4.6 MEDIUM | N/A |
Unspecified vulnerability in the Job Queue component in Oracle Database Server 11.2.0.1, 11.1.0.7, 10.2.0.3, 10.2.0.4, and 10.1.0.5 allows remote authenticated users to affect confidentiality, integrity, and availability, related to SYS.DBMS_IJOB. | |||||
CVE-2010-2410 | 1 Oracle | 1 Fusion Middleware | 2024-11-21 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the Cabo/UIX component in Oracle Fusion Middleware 10.1.2.3 and 10.1.3.5 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2010-2395 and CVE-2010-2409. | |||||
CVE-2010-2409 | 1 Oracle | 1 Fusion Middleware | 2024-11-21 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the Cabo/UIX component in Oracle Fusion Middleware 10.1.2.3 and 10.1.3.5 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2010-2395 and CVE-2010-2410. | |||||
CVE-2010-2408 | 1 Oracle | 1 E-business Suite | 2024-11-21 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the Oracle iRecruitment component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect integrity via unknown vectors. | |||||
CVE-2010-2407 | 1 Oracle | 1 Database Server | 2024-11-21 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the XDK component in Oracle Database Server 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect integrity via unknown vectors. | |||||
CVE-2010-2406 | 1 Oracle | 1 Siebel Suite | 2024-11-21 | 4.0 MEDIUM | N/A |
Unspecified vulnerability in the Siebel Core - Highly Interactive Client component in Oracle Siebel Suite 7.7.2.12, 7.8.2.14, 8.0.0.10, and 8.1.1.3 allows remote authenticated users to affect confidentiality via unknown vectors. | |||||
CVE-2010-2405 | 1 Oracle | 1 Siebel Suite | 2024-11-21 | 6.0 MEDIUM | N/A |
Unspecified vulnerability in the Siebel Core - Highly Interactive Client component in Oracle Siebel Suite 7.7.2.12, 7.8.2.14, 8.0.0.10, and 8.1.1.3 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2010-3500. |