Show filters
42 Total Results
Displaying 31-40 of 42
Sort by:
Attacker Value
Unknown
CVE-2002-0564
Disclosure Date: July 03, 2002 (last updated February 22, 2025)
PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allows remote attackers to bypass authentication for a Database Access Descriptor (DAD) by modifying the URL to reference an alternate DAD that already has valid credentials.
0
Attacker Value
Unknown
CVE-2002-0560
Disclosure Date: July 03, 2002 (last updated February 22, 2025)
PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allows remote attackers to obtain sensitive information via the OWA_UTIL stored procedures (1) OWA_UTIL.signature, (2) OWA_UTIL.listprint, or (3) OWA_UTIL.show_query_columns.
0
Attacker Value
Unknown
CVE-2001-0517
Disclosure Date: July 21, 2001 (last updated February 22, 2025)
Oracle listener in Oracle 8i on Solaris allows remote attackers to cause a denial of service via a malformed connection packet with a maximum transport data size that is set to 0.
0
Attacker Value
Unknown
CVE-2001-0515
Disclosure Date: July 21, 2001 (last updated February 22, 2025)
Oracle Listener in Oracle 7.3 and 8i allows remote attackers to cause a denial of service via a malformed connection packet with a large offset_to_data value.
0
Attacker Value
Unknown
CVE-2001-0326
Disclosure Date: May 03, 2001 (last updated February 22, 2025)
Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the <<ALL FILES>> FilePermission.
0
Attacker Value
Unknown
CVE-2001-0126
Disclosure Date: March 12, 2001 (last updated February 22, 2025)
Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet.
0
Attacker Value
Unknown
CVE-2000-1180
Disclosure Date: January 09, 2001 (last updated February 22, 2025)
Buffer overflow in cmctl program in Oracle 8.1.5 Connection Manager Control allows local users to gain privileges via a long command line argument.
0
Attacker Value
Unknown
CVE-2000-0986
Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Buffer overflow in Oracle 8.1.5 applications such as names, namesctl, onrsd, osslogin, tnslsnr, tnsping, trcasst, and trcroute possibly allow local users to gain privileges via a long ORACLE_HOME environmental variable.
0
Attacker Value
Unknown
CVE-2000-0987
Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.
0
Attacker Value
Unknown
CVE-2000-0206
Disclosure Date: March 05, 2000 (last updated February 22, 2025)
The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local users to gain privileges.
0