CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6014 | CVE-2002-1630 | Candidate | The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails. | Assigned (20050326) | None (candidate not yet proposed) | View | |
6015 | CVE-2002-1631 | Candidate | SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers to execute arbitrary code via the sql parameter. | Assigned (20050326) | None (candidate not yet proposed) | View | |
6016 | CVE-2002-1632 | Candidate | Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment variables and other sensitive information via (1) info.jsp, (2) printenv, (3) echo, or (4) echo2. | Assigned (20050326) | None (candidate not yet proposed) | View | |
6017 | CVE-2002-1633 | Candidate | Multiple buffer overflows in QNX 4.25 may allow local users to execute arbitrary code via long command line arguments to (1) sample, (2) ex, (3) du, (4) find, (5) lex, (6) mkdir, (7) rm, (8) serserv, (9) tcpserv, (10) termdef, (11) time, (12) unzip, (13) use, (14) wcc, (15) wcc386, (16) wd, (17) wdisasm, (18) which, (19) wlib, (20) wlink, (21) wpp, (22) wpp386, (23) wprof, (24) write, or (25) wstrip. | Assigned (20050326) | None (candidate not yet proposed) | View | |
10199 | CVE-2004-1771 | Candidate | Scalable OGo (SOGo) 1.0 allows remote authenticated users to bypass intended permissions and view private appointments of other users. | Assigned (20050326) | None (candidate not yet proposed) | View |
Page 19613 of 20943, showing 5 records out of 104715 total, starting on record 98061, ending on 98065