CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3456  CVE-2001-0647  Candidate  Orange Web Server 2.1, based on GoAhead, allows a remote attacker to perform a denial of service via an HTTP GET request that does not include the HTTP version.  Modified (20071219)  ACCEPT(2) Foat, Williams | MODIFY(1) Frech | NOOP(4) Christey, Cole, Stracener, Wall  Frech> XF:orange-http-echo-dos(6164) | Christey> Need to clean up BID, add other Bugtraq ref.  View
1105  CVE-1999-1125  Candidate  Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.  Proposed (20010912)  MODIFY(1) Frech | NOOP(2) Cole, Foat  Frech> XF:oracle-webserver-gain-root(7174)  View
1048  CVE-1999-1068  Candidate  Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request.  Proposed (20010912)  MODIFY(1) Frech | NOOP(2) Cole, Foat  Frech> XF:oracle-webserver-dos(1812)  View
1527  CVE-1999-1547  Candidate  Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with its HTTP-encoded (hex) equivalent.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:oracle-weblistener-bypass-restrictions(8355)  View
764  CVE-1999-0784  Candidate  Denial of service in Oracle TNSLSNR SQL*Net Listener via a malformed string to the listener port, aka NERP.  Proposed (20010214)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Cole  Frech> XF:oracle-tnslsnr-dos(1551)  View

Page 112 of 20943, showing 5 records out of 104715 total, starting on record 556, ending on 560

Actions