Show filters
42 Total Results
Displaying 31-40 of 42
Sort by:
Attacker Value
Unknown

CVE-2002-0564

Disclosure Date: July 03, 2002 (last updated February 22, 2025)
PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allows remote attackers to bypass authentication for a Database Access Descriptor (DAD) by modifying the URL to reference an alternate DAD that already has valid credentials.
0
Attacker Value
Unknown

CVE-2002-0560

Disclosure Date: July 03, 2002 (last updated February 22, 2025)
PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allows remote attackers to obtain sensitive information via the OWA_UTIL stored procedures (1) OWA_UTIL.signature, (2) OWA_UTIL.listprint, or (3) OWA_UTIL.show_query_columns.
0
Attacker Value
Unknown

CVE-2001-0517

Disclosure Date: July 21, 2001 (last updated February 22, 2025)
Oracle listener in Oracle 8i on Solaris allows remote attackers to cause a denial of service via a malformed connection packet with a maximum transport data size that is set to 0.
0
Attacker Value
Unknown

CVE-2001-0515

Disclosure Date: July 21, 2001 (last updated February 22, 2025)
Oracle Listener in Oracle 7.3 and 8i allows remote attackers to cause a denial of service via a malformed connection packet with a large offset_to_data value.
0
Attacker Value
Unknown

CVE-2001-0326

Disclosure Date: May 03, 2001 (last updated February 22, 2025)
Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the <<ALL FILES>> FilePermission.
0
Attacker Value
Unknown

CVE-2001-0126

Disclosure Date: March 12, 2001 (last updated February 22, 2025)
Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet.
0
Attacker Value
Unknown

CVE-2000-1180

Disclosure Date: January 09, 2001 (last updated February 22, 2025)
Buffer overflow in cmctl program in Oracle 8.1.5 Connection Manager Control allows local users to gain privileges via a long command line argument.
0
Attacker Value
Unknown

CVE-2000-0986

Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Buffer overflow in Oracle 8.1.5 applications such as names, namesctl, onrsd, osslogin, tnslsnr, tnsping, trcasst, and trcroute possibly allow local users to gain privileges via a long ORACLE_HOME environmental variable.
0
Attacker Value
Unknown

CVE-2000-0987

Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.
0
Attacker Value
Unknown

CVE-2000-0206

Disclosure Date: March 05, 2000 (last updated February 22, 2025)
The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local users to gain privileges.
0