CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7461  CVE-2003-0634  Candidate  Stack-based buffer overflow in the PL/SQL EXTPROC functionality for Oracle9i Database Release 2 and 1, and Oracle 8i, allows authenticated database users, and arbitrary database users in some cases, to execute arbitrary code via a long library name.  Assigned (20030801)  None (candidate not yet proposed)    View
7462  CVE-2003-0635  Candidate  Unknown vulnerability or vulnerabilities in Novell iChain 2.2 before Support Pack 1, with unknown impact, possibly related to unauthorized access to (1) NCPIP.NLM and (2) JSTCP.NLM.  Assigned (20030801)  None (candidate not yet proposed)    View
7463  CVE-2003-0636  Candidate  Novell iChain 2.2 before Support Pack 1 does not properly verify that URL redirects match the DNS name of an accelerator, which allows attackers to redirect URLs to malicious web sites.  Assigned (20030801)  None (candidate not yet proposed)    View
7464  CVE-2003-0637  Candidate  Novell iChain 2.2 before Support Pack 1 uses a shorter timeout for a non-existent user than a valid user, which makes it easier for remote attackers to guess usernames and conduct brute force password guessing.  Assigned (20030801)  None (candidate not yet proposed)    View
7465  CVE-2003-0638  Candidate  Multiple buffer overflows in Novell iChain 2.1 before Field Patch 3, and iChain 2.2 before Field Patch 1a, allow attackers to cause a denial of service (ABEND) and possibly execute arbitrary code via (1) a long user name or (2) an unknown attack related to a "special script against login."  Assigned (20030801)  None (candidate not yet proposed)    View

Page 741 of 20943, showing 5 records out of 104715 total, starting on record 3701, ending on 3705

Actions