Show filters
93 Total Results
Displaying 81-90 of 93
Sort by:
Attacker Value
Unknown
CVE-2009-3762
Disclosure Date: July 13, 2010 (last updated October 04, 2023)
Unspecified vulnerability in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors.
0
Attacker Value
Unknown
CVE-2009-3764
Disclosure Date: July 13, 2010 (last updated October 04, 2023)
Unspecified vulnerability in the OpenSSO component in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors.
0
Attacker Value
Unknown
CVE-2009-3763
Disclosure Date: July 13, 2010 (last updated October 04, 2023)
Unspecified vulnerability in the Access Manager / OpenSSO component in Oracle OpenSSO Enterprise 7.1, 7, 2005Q4, and 8.0 allows remote attackers to affect integrity via unknown vectors.
0
Attacker Value
Unknown
CVE-2010-2124
Disclosure Date: June 01, 2010 (last updated October 04, 2023)
SQL injection vulnerability in firma.php in Bartels Schone ConPresso 4.0.7 allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown
CVE-2010-0894
Disclosure Date: April 13, 2010 (last updated October 04, 2023)
Unspecified vulnerability in the Sun Java System Access Manager component in Oracle Sun Product Suite 7.1, 7 2005Q4, and OpenSSO Enterprise 8.0 allows remote attackers to affect confidentiality and integrity via unknown vectors.
0
Attacker Value
Unknown
CVE-2009-2712
Disclosure Date: August 07, 2009 (last updated October 04, 2023)
Sun Java System Access Manager 6.3 2005Q1, 7.0 2005Q4, and 7.1; and OpenSSO Enterprise 8.0; when AMConfig.properties enables the debug flag, allows local users to discover cleartext passwords by reading debug files.
0
Attacker Value
Unknown
CVE-2009-0050
Disclosure Date: January 07, 2009 (last updated October 04, 2023)
Lasso 2.2.1 and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.
0
Attacker Value
Unknown
CVE-2006-5965
Disclosure Date: November 26, 2006 (last updated October 04, 2023)
PassGo SSO Plus 2.1.0.32, and probably earlier versions, uses insecure permissions (Everyone/Full Control) for the PassGo Technologies directory, which allows local users to gain privileges by modifying critical programs.
0
Attacker Value
Unknown
CVE-2006-5128
Disclosure Date: October 03, 2006 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Bartels Schoene ConPresso before 4.0.5a allows remote attackers to execute arbitrary SQL commands via the nr parameter.
0
Attacker Value
Unknown
CVE-2006-5127
Disclosure Date: October 03, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Bartels Schoene ConPresso before 4.0.5a allow remote attackers to inject arbitrary web script or HTML via (1) the nr parameter in detail.php, (2) the msg parameter in db_mysql.inc.php, and (3) the pos parameter in index.php.
0