CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11503  CVE-2005-0297  Candidate  SQL injection vulnerability in Oracle Database 9i and 10g allows remote attackers to execute arbitrary SQL commands and gain privileges.  Assigned (20050210)  None (candidate not yet proposed)    View
11504  CVE-2005-0298  Candidate  The DIRECTORY objects in Oracle 8i through Oracle 10g contain the location of a specific operating system directory, which allows users with read privileges to a DIRECTORY object to obtain sensitive information.  Assigned (20050210)  None (candidate not yet proposed)    View
11505  CVE-2005-0299  Candidate  Directory traversal vulnerability in GForge 3.3 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in the (1) dir parameter to controller.php or (2) dir_name parameter to controlleroo.php.  Assigned (20050210)  None (candidate not yet proposed)    View
11506  CVE-2005-0300  Candidate  Directory traversal vulnerability in session.php in JSBoard 2.0.9 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the table parameter.  Assigned (20050210)  None (candidate not yet proposed)    View
11507  CVE-2005-0301  Candidate  comersus_backoffice_install10.asp in BackOffice Lite 6.0 and 6.01 allows remote attackers to bypass authentication and gain privileges via a direct request to the program.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 19827 of 20943, showing 5 records out of 104715 total, starting on record 99131, ending on 99135

Actions