CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6014  CVE-2002-1630  Candidate  The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails.  Assigned (20050326)  None (candidate not yet proposed)    View
6015  CVE-2002-1631  Candidate  SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers to execute arbitrary code via the sql parameter.  Assigned (20050326)  None (candidate not yet proposed)    View
6016  CVE-2002-1632  Candidate  Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment variables and other sensitive information via (1) info.jsp, (2) printenv, (3) echo, or (4) echo2.  Assigned (20050326)  None (candidate not yet proposed)    View
6017  CVE-2002-1633  Candidate  Multiple buffer overflows in QNX 4.25 may allow local users to execute arbitrary code via long command line arguments to (1) sample, (2) ex, (3) du, (4) find, (5) lex, (6) mkdir, (7) rm, (8) serserv, (9) tcpserv, (10) termdef, (11) time, (12) unzip, (13) use, (14) wcc, (15) wcc386, (16) wd, (17) wdisasm, (18) which, (19) wlib, (20) wlink, (21) wpp, (22) wpp386, (23) wprof, (24) write, or (25) wstrip.  Assigned (20050326)  None (candidate not yet proposed)    View
10199  CVE-2004-1771  Candidate  Scalable OGo (SOGo) 1.0 allows remote authenticated users to bypass intended permissions and view private appointments of other users.  Assigned (20050326)  None (candidate not yet proposed)    View

Page 19613 of 20943, showing 5 records out of 104715 total, starting on record 98061, ending on 98065

Actions