Show filters
37 Total Results
Displaying 31-37 of 37
Sort by:
Attacker Value
Unknown
CVE-2005-0942
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
The XP Server process (xp_server) in Sybase Adaptive Server Enterprise (ASE) XP Server 12.x before 12.5.3 ESD#1 allows attackers to cause a denial of service (process crash) via malformed data sent to the XP Server TCP port.
0
Attacker Value
Unknown
CVE-2005-0441
Disclosure Date: December 22, 2004 (last updated February 22, 2025)
Multiple stack-based buffer overflows in Sybase Adaptive Server Enterprise (ASE) 12.x before 12.5.3 ESD#1 allow remote authenticated users to execute arbitrary code via the (1) attrib_valid function, (2) covert function, (3) declare statement, or (4) a crafted query plan, or remote authenticated users with database owner or "sa" role privileges to execute arbitrary code via (5) a crafted install java statement.
0
Attacker Value
Unknown
CVE-2003-0327
Disclosure Date: December 15, 2003 (last updated February 22, 2025)
Sybase Adaptive Server Enterprise (ASE) 12.5 allows remote attackers to cause a denial of service (hang) via a remote password array with an invalid length, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2002-1861
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Sybase Enterprise Application Server 4.0, when running on Windows, allows remote attackers to retrieve files in the WEB-INF directory, which contains Java class files and configuration information, via a request to the WEB-INF directory with a trailing dot ("WEB-INF.").
0
Attacker Value
Unknown
CVE-2002-2250
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Multiple buffer overflows in Sybase Adaptive Server 12.0 and 12.5 allow remote attackers to execute arbitrary code via (1) a long parameter to the xp_freedll extended stored procedure or (2) a long database name argument to the DBCC CHECKVERIFY function.
0
Attacker Value
Unknown
CVE-2001-0599
Disclosure Date: August 02, 2001 (last updated February 22, 2025)
Sybase Adaptive Server Anywhere Database Engine 6.0.3.2747 and earlier as included with Symantec Ghost 6.5 allows a remote attacker to create a denial of service by sending large (> 45Kb) amounts of data to port 2638.
0
Attacker Value
Unknown
CVE-1999-0695
Disclosure Date: April 11, 2000 (last updated February 22, 2025)
The Sybase PowerDynamo personal web server allows attackers to read arbitrary files through a .. (dot dot) attack.
0