| ID | Date Public | Name |
|---|
VU#472148 | 07/21/2005 | Oracle Reports arbitrary file writing vulnerability |
VU#925261 | 07/19/2005 | Oracle Reports arbitrary file reading vulnerability |
VU#298958 | 02/24/2006 | Oracle Diagnostic Tools do not properly authenticate users |
VU#891644 | 01/17/2006 | Oracle Database XML Database SQL Injection vulnerability |
VU#545804 | 01/17/2006 | Oracle products contain multiple vulnerabilities |
VU#150332 | 01/17/2006 | Oracle Text SQL injection vulnerability |
VU#865948 | 10/18/2005 | Oracle Enterprise Manager Oracle Agent contains a buffer overflow |
VU#210524 | 10/18/2005 | Oracle products contain multiple vulnerabilities |
VU#376756 | 10/18/2005 | Oracle Application Server Internet Directory vulnerability |
VU#613562 | 07/12/2005 | Oracle products contain multiple vulnerabilities |
VU#948486 | 04/12/2005 | Oracle products contain multiple vulnerabilities |
VU#496340 | 10/20/2003 | Oracle command-line program buffer overflow in argument handling |
VU#158323 | 04/01/2002 | Oracle Configurator discloses version and host information via "test" argument passed to servlet |
VU#997403 | 05/27/2002 | Oracle Reports Server Reports Web Cartridge (RWCGI60) vulnerable to buffer overflow via database name parameter |
VU#118277 | 10/18/2000 | The Oracle Internet Directory LDAP (oidldapd) contains buffer overflow |
VU#170830 | 08/31/2004 | Oracle Enterprise Manager contains several vulnerabilities |
VU#413006 | 03/15/2004 | Oracle Application Server Web Cache contains heap overflow vulnerability |
VU#322460 | 01/17/2007 | Oracle Collaboration Suite denial of service vulnerability |
VU#221788 | 01/17/2007 | Oracle SYS.DBMS_AQ package vulnerable to PL/SQL injection |
VU#717140 | 10/17/2006 | Oracle ENABLE_HIERARCHY_INTERNAL procedure vulnerable to PL/SQL injection |
VU#318764 | 10/17/2006 | Oracle DISABLE_HIERARCHY_INTERNAL procedure vulnerable to PL/SQL injection |
VU#869292 | 10/17/2006 | Oracle MDSYS.SDO_LRS package vulnerable to PL/SQL injection |
VU#736324 | 10/17/2006 | Oracle SYS.DBMS_CDC_IMPDP package vulnerable to PL/SQL injection |
VU#446100 | 10/17/2006 | Oracle CREATE_CHANGE_TABLE procedure vulnerable to PL/SQL injection |
VU#716964 | 10/17/2006 | Oracle PREPARE_UNBOUNDED_VIEW procedure vulnerable to PL/SQL injection |
VU#932124 | 04/26/2006 | Oracle DBMS_EXPORT_EXTENSION package vulnerable to SQL injection |
VU#452681 | 04/18/2006 | Oracle Export component SQL injection vulnerability |
VU#241481 | 04/18/2006 | Oracle Dictionary vulnerability |
VU#879041 | 04/18/2006 | Oracle Collaboration Suite Email Server vulnerability |
VU#443265 | 04/18/2006 | Oracle Reporting Framework vulnerability |
VU#240249 | 04/18/2006 | Oracle Spatial SQL injection vulnerability |
VU#549146 | 04/19/2006 | Oracle Collaboration Suite Email Server contains a vulnerability that may compromise system confidentiality |
VU#797465 | 04/18/2006 | Oracle Advanced Replication SQL injection vulnerability |
VU#940729 | 04/18/2006 | Oracle Diagnostics Interfaces vulnerability |
VU#619194 | 04/18/2006 | Oracle Order Capture vulnerability |
VU#824833 | 04/18/2006 | Oracle Application Object Library vulnerability |
VU#139049 | 04/18/2006 | Oracle DBMS_REPUTIL package vulnerable to SQL injection |
VU#999268 | 01/17/2006 | Oracle Client Tools buffer overflow vulnerability |
VU#857412 | 01/17/2005 | Oracle Transparent Data Encryption master encryption key stored as plaintext |
VU#169164 | 01/25/2006 | Oracle PL/SQL Gateway fails to properly validate HTTP requests |
VU#871756 | 01/17/2006 | Oracle TNS protocol fails to properly validate authentication requests |
VU#983340 | 01/17/2006 | Oracle Database Data Pump Metadata API SQL injection vulnerability |
VU#629316 | 01/17/2006 | Oracle Database SYS.DBMS_METADATA_UTIL package SQL injection vulnerability |
VU#870172 | 01/17/2006 | Oracle Database Net Listener vulnerability |
VU#890940 | 10/18/2005 | Oracle HTTP Server vulnerability |
VU#512716 | 10/18/2005 | Oracle Application Server Web Cache vulnerability |
VU#171364 | 10/18/2005 | Oracle Application Server SQL*ReportWriter vulnerability |
VU#265700 | 10/18/2005 | Oracle Human Resource Management System vulnerability |
VU#609340 | 10/18/2005 | Oracle E-Business Suite Applications Utilities vulnerability |
VU#449444 | 10/18/2005 | Oracle Database Server buffer overflow in Security Component |
VU#150508 | 10/18/2005 | Oracle E-Business Suite Applications Technology Stack vulnerability |
VU#982109 | 04/12/2005 | Oracle contains multiple SQL injection vulnerabilities |
VU#620495 | 06/27/2001 | Oracle 8i contains buffer overflow in TNS Listener |
VU#316206 | 08/10/2004 | Oracle Database Server contains several vulnerabilities |
VU#663786 | 02/11/2003 | Oracle9i Database contains remotely exploitable buffer overflow in "BFILENAME" function |
VU#435974 | 08/31/2004 | Oracle Application Server contains several vulnerabilities |
VU#961579 | 06/04/2004 | Oracle E-Business Suite SQL Injection vulnerabilities |
VU#180147 | 02/06/2002 | Oracle 9i Database Server PL/SQL module allows remote command execution without authentication |
VU#610904 | 12/22/2000 | Oracle Internet Directory LDAP Daemon does not check write permissions properly |
VU#712723 | 01/10/2002 | Oracle 9iAS default configuration uses well-known default passwords |
VU#840666 | 02/11/2003 | Oracle9i Database contains remotely exploitable buffer overflow in "TO_TIMESTAMP_TZ" function |
VU#953746 | 02/11/2003 | Oracle9i Database contains remotely exploitable buffer overflow in "ORACLE.EXE" |
VU#743954 | 02/11/2003 | Oracle9i Database contains remotely exploitable buffer overflow in "TZ_OFFSET" function |
VU#936868 | 07/25/2003 | Oracle Database Server contains stack overflow in logging mechanism when supplied overly long library name |
VU#291555 | 05/27/2002 | Oracle Web Cache contains buffer overflow vulnerabilities |
VU#105259 | 06/19/2001 | Oracle Database Server vulnerable to DoS via repeated requests to Oracle listener without connecting to redirected port |
VU#698467 | 02/06/2002 | Oracle 9iAS default configuration allows access to "globals.jsa" file |
VU#278971 | 09/17/2001 | Oracle 9i Application Server does not adequately handle requests for nonexistent JSP files thereby disclosing web folder path information |
VU#511194 | 02/11/2003 | Oracle9i Application Server MOD_ORADAV Module vulnerable to DoS |
VU#809457 | 04/17/2007 | Oracle Database vulnerable to privilege escalation |
VU#805737 | 04/06/2006 | Oracle views fail to enforce table security settings |
VU#846582 | 02/06/2004 | Oracle9i Database contains buffer overflow in NUMTODSINTERVAL() function |
VU#467555 | 05/27/2002 | Oracle Application Server contains format string vulnerability |
VU#399806 | 02/06/2004 | Oracle9i Database contains buffer overflow in FROM_TZ() function |
VU#168873 | 04/10/2003 | Oracle E-Business Suite Report Review Agent (RRA) allows arbitrary files to be retrieved with no authentication |
VU#240174 | 02/06/2004 | Oracle9i Database contains buffer overflow in TIME_ZONE session parameter |
VU#717827 | 01/10/2002 | Multiple Oracle 9iAS sample pages contain vulnerabilities |
VU#547459 | 02/06/2002 | Oracle 9iAS creates temporary files when processing JSP requests that are world-readable |
VU#736923 | 01/10/2002 | Oracle 9iAS SOAP components allow anonymous users to deploy applications by default |
VU#819126 | 02/06/2004 | Oracle9i Database contains buffer overflow in NUMTOYMINTERVAL() function |
VU#301059 | 05/27/2002 | Oracle TNS Listener Control Utility (LSNRCTL) contains format string vulnerability |
VU#630091 | 05/27/2002 | Oracle9i Database TNS Listener vulnerable to buffer overflow via SERVICE_NAME parameter |
VU#474433 | 08/28/2007 | Oracle JInitiator ActiveX control stack buffer overflows |
VU#716387 | 07/21/2008 | Oracle Weblogic Apache connector vulnerable to buffer overflow |
VU#758483 | 12/13/2001 | Oracle9i Application Server Apache PL/SQL module does not properly decode URL |
VU#798611 | 02/06/2002 | Oracle 9iAS contains cross-site scripting vulnerability in "htp.print" |
VU#936507 | 01/10/2002 | Oracle 9iAS allows access to CGI script source code within CGI-BIN directory |
VU#869184 | 07/16/2001 | Oracle Internet Directory contains multiple vulnerabilities in LDAP handling code |
VU#168795 | 01/10/2002 | Oracle 9iAS allows anonymous remote users to view sensitive Apache services by default |
VU#500203 | 12/13/2001 | Oracle9i Application Server Apache PL/SQL module vulnerable to buffer overflow via help page request |
VU#659043 | 02/06/2002 | Oracle9i Application Server Apache PL/SQL module vulnerable to buffer overflow via Database Access Descriptor password |
VU#878603 | 02/06/2002 | Oracle9i Application Server Apache PL/SQL module vulnerable to buffer overflow via HTTP Authorization header |
VU#193523 | 01/10/2002 | Oracle9i Application Server allows unauthenticated access to PL/SQL applications via alternate Database Access Descriptor |
VU#923395 | 02/06/2002 | Oracle9i Application Server Apache PL/SQL module vulnerable to buffer overflow via cache directory name |
VU#750299 | 02/06/2002 | Oracle9i Application Server Apache PL/SQL module vulnerable to buffer overflow via HTTP request |
VU#805915 | 02/06/2002 | Oracle9i Application Server Apache PL/SQL module does not properly handle HTTP Authorization header |
VU#307835 | 01/10/2002 | Oracle9i Application Server OWA_UTIL procedures expose sensitive information |
VU#313280 | 01/10/2002 | Oracle9i Application Server Apache PL/SQL module vulnerable to buffer overflow via HTTP Location header |
VU#476619 | 02/06/2002 | Oracle 9iAS default configuration allows arbitrary users to view sensitive configuration files |
VU#977251 | 02/06/2002 | Oracle 9iAS XSQL Servlet ignores file permissions allowing arbitrary users to view sensitive configuration files |
VU#611776 | 01/10/2002 | Oracle9i Application Server PL/SQL Gateway web administration interface uses null authentication by default |
VU#649979 | 10/18/2001 | Oracle9iAS Web Cache vulnerable to buffer overflow |
VU#849993 | 02/11/2003 | Some implementations of mod_dav contain a format string vulnerability in "ap_log_rerror()" function |
VU#303094 | 02/10/2005 | OpenPGP vulnerable to chosen-ciphertext attacks in cipher feedback (CFB) mode |
VU#279774 | 08/02/2005 | Computer Associates BrightStor ARCserve Backup Agents vulnerable to buffer overflow |
VU#888801 | 03/19/2003 | SSL/TLS implementations disclose side channel information via PKCS #1 v1.5 version number extension |
VU#997481 | 03/14/2003 | Cryptographic libraries and applications do not adequately defend against timing attacks |
VU#395412 | 07/27/2006 | Apache mod_rewrite contains off-by-one error in ldap scheme handling |
VU#744929 | 08/31/2005 | mod_ssl fails to properly enforce client certificates authentication |
VU#466161 | 07/14/2009 | XML signature HMAC truncation authentication bypass |
VU#423396 | 08/02/2004 | X.509 certificate verification may be vulnerable to resource exhaustion |
VU#867593 | 01/20/2003 | Web servers enable HTTP TRACE method by default |
VU#142121 | 02/22/2003 | zlib "gzprintf()" function vulnerable to buffer overflow |
VU#944335 | 06/17/2002 | Apache web servers fail to handle chunks with a negative size |
VU#146718 | 06/14/2006 | Sendmail fails to handle malformed multipart MIME messages |
VU#456745 | 07/09/2009 | ActiveX controls built with Microsoft ATL fail to properly handle initialization data |
VU#749342 | 01/13/2003 | Multiple vulnerabilities in H.323 implementations |
VU#834865 | 03/22/2006 | Sendmail signal I/O race condition |
VU#528719 | 02/21/2003 | Multiple implementations of the Session Initiation Protocol (SIP) contain multiple types of vulnerabilities |
VU#547300 | 09/28/2006 | OpenSSL SSL_get_shared_ciphers() vulnerable to buffer overflow |
VU#845620 | 09/05/2006 | Multiple RSA implementations fail to properly handle signatures |
VU#386964 | 09/28/2006 | OpenSSL SSLv2 client code fails to properly check for NULL |
VU#978316 | 06/04/2003 | Vulnerability in OpenSSH daemon (sshd) |
VU#878044 | 05/31/2008 | SNMPv3 improper HMAC validation allows authentication bypass |
VU#854306 | 02/12/2002 | Multiple vulnerabilities in SNMPv1 request handling |
If this page is empty, your search did not match any documents.