Show filters
142 Total Results
Displaying 121-130 of 142
Sort by:
Attacker Value
Unknown
CVE-2007-3854
Disclosure Date: July 18, 2007 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+, 9.2.0.7, and 10.1.0.5 allow remote authenticated users to have unknown impact via (1) SYS.DBMS_PRVTAQIS in the Advanced Queuing component (DB02) and (2) MDSYS.MD in the Spatial component (DB12). NOTE: Oracle has not disputed reliable researcher claims that DB02 is for SQL injection and DB12 is for a buffer overflow.
0
Attacker Value
Unknown
CVE-2007-0454
Disclosure Date: February 06, 2007 (last updated October 04, 2023)
Format string vulnerability in the afsacl.so VFS module in Samba 3.0.6 through 3.0.23d allows context-dependent attackers to execute arbitrary code via format string specifiers in a filename on an AFS file system, which is not properly handled during Windows ACL mapping.
0
Attacker Value
Unknown
CVE-2006-1884
Disclosure Date: April 20, 2006 (last updated October 04, 2023)
Unspecified vulnerability in the Oracle Thesaurus Management System component in Oracle E-Business Suite and OPA 4.5.2 Applications has unknown impact and attack vectors, aka Vuln# OPA01.
0
Attacker Value
Unknown
CVE-2006-0978
Disclosure Date: March 03, 2006 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in the View Headers (aka viewheaders) functionality in ArGoSoft Mail Server Pro 1.8.8.5 allow remote attackers to inject arbitrary web script or HTML via (1) the Subject header, (2) the From header, and (3) certain other unspecified headers.
0
Attacker Value
Unknown
CVE-2006-0930
Disclosure Date: February 28, 2006 (last updated February 22, 2025)
Directory traversal vulnerability in Webmail in ArGoSoft Mail Server Pro 1.8 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the UIDL parameter.
0
Attacker Value
Unknown
CVE-2006-0929
Disclosure Date: February 28, 2006 (last updated February 22, 2025)
Directory traversal vulnerability in the IMAP server in ArGoSoft Mail Server Pro 1.8.8.1 allows remote authenticated users to create arbitrary folders via a .. (dot dot) in the RENAME command.
0
Attacker Value
Unknown
CVE-2006-0928
Disclosure Date: February 28, 2006 (last updated February 22, 2025)
The POP3 Server in ArGoSoft Mail Server Pro 1.8 allows remote attackers to obtain sensitive information via the _DUMP command, which reveals the operating system, registered user, and registration code.
0
Attacker Value
Unknown
CVE-2006-0552
Disclosure Date: February 04, 2006 (last updated February 22, 2025)
Unspecified vulnerability in the Net Listener component of Oracle Database server 8.1.7.4, 9.0.1.5, 9.0.1.5 FIPS, and 9.2.0.7 has unspecified impact and attack vectors, as identified by Oracle Vuln# DB11.
0
Attacker Value
Unknown
CVE-2005-3294
Disclosure Date: October 23, 2005 (last updated February 22, 2025)
Typsoft FTP Server 1.11, with "Sub Directory Include" enabled, allows remote attackers to cause a denial of service (crash) by sending multiple RETR commands. NOTE: it was later reported that 1.10 is also affected.
0
Attacker Value
Unknown
CVE-2005-1284
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
The addnew script in Argosoft Mail Server Pro 1.8.7.6 allows remote attackers to create arbitrary accounts, even if "Allow Creation of Accounts From the Web Interface" is disabled, via a direct HTTP POST request.
0