CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9796 | CVE-2004-1368 | Candidate | ISQL*Plus in Oracle 10g Application Server allows remote attackers to execute arbitrary files via an absolute pathname in the file parameter to the load.uix script. | Assigned (20050107) | None (candidate not yet proposed) | View | |
9797 | CVE-2004-1369 | Candidate | The TNS Listener in Oracle 10g allows remote attackers to cause a denial of service (listener crash) via a malformed service_register_NSGR request containing a value that is used as an invalid offset for a pointer that references incorrect memory. | Assigned (20050107) | None (candidate not yet proposed) | View | |
9798 | CVE-2004-1370 | Candidate | Multiple SQL injection vulnerabilities in PL/SQL procedures that run with definer rights in Oracle 9i and 10g allow remote attackers to execute arbitrary SQL commands and gain privileges via (1) DBMS_EXPORT_EXTENSION, (2) WK_ACL.GET_ACL, (3) WK_ACL.STORE_ACL, (4) WK_ADM.COMPLETE_ACL_SNAPSHOT, (5) WK_ACL.DELETE_ACLS_WITH_STATEMENT, or (6) DRILOAD.VALIDATE_STMT. | Assigned (20050107) | None (candidate not yet proposed) | View | |
9799 | CVE-2004-1371 | Candidate | Stack-based buffer overflow in Oracle 9i and 10g allows remote attackers to execute arbitrary code via a long token in the text of a wrapped procedure. | Assigned (20050107) | None (candidate not yet proposed) | View | |
9800 | CVE-2004-1372 | Candidate | Multiple stack-based buffer overflows in IBM DB2 7.x and 8.1 allow local users to execute arbitrary code via (1) a long third argument to the rec2xml function or (2) a long filename argument to the generate_distfile procedure. | Assigned (20050107) | None (candidate not yet proposed) | View |
Page 1056 of 20943, showing 5 records out of 104715 total, starting on record 5276, ending on 5280