Show filters
13 Total Results
Displaying 11-13 of 13
Sort by:
Attacker Value
Unknown
CVE-2004-1981
Disclosure Date: May 02, 2004 (last updated February 22, 2025)
The web interface for Crystal Reports allows remote attackers to cause a denial of service (disk exhaustion) by repeatedly requesting reports without retrieving the associated image files, which are not cleared from the image file folder.
0
Attacker Value
Unknown
CVE-2003-1249
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
WebIntelligence 2.7.1 uses guessable user session cookies, which allows remote attackers to hijack sessions.
0
Attacker Value
Unknown
CVE-2001-1464
Disclosure Date: January 10, 2001 (last updated February 22, 2025)
Crystal Reports, when displaying data for a password protected database using HTML pages, embeds the username and password in cleartext in the HTML page and the URL, which allows remote attackers to obtain passwords.
0