CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7461 | CVE-2003-0634 | Candidate | Stack-based buffer overflow in the PL/SQL EXTPROC functionality for Oracle9i Database Release 2 and 1, and Oracle 8i, allows authenticated database users, and arbitrary database users in some cases, to execute arbitrary code via a long library name. | Assigned (20030801) | None (candidate not yet proposed) | View | |
7462 | CVE-2003-0635 | Candidate | Unknown vulnerability or vulnerabilities in Novell iChain 2.2 before Support Pack 1, with unknown impact, possibly related to unauthorized access to (1) NCPIP.NLM and (2) JSTCP.NLM. | Assigned (20030801) | None (candidate not yet proposed) | View | |
7463 | CVE-2003-0636 | Candidate | Novell iChain 2.2 before Support Pack 1 does not properly verify that URL redirects match the DNS name of an accelerator, which allows attackers to redirect URLs to malicious web sites. | Assigned (20030801) | None (candidate not yet proposed) | View | |
7464 | CVE-2003-0637 | Candidate | Novell iChain 2.2 before Support Pack 1 uses a shorter timeout for a non-existent user than a valid user, which makes it easier for remote attackers to guess usernames and conduct brute force password guessing. | Assigned (20030801) | None (candidate not yet proposed) | View | |
7465 | CVE-2003-0638 | Candidate | Multiple buffer overflows in Novell iChain 2.1 before Field Patch 3, and iChain 2.2 before Field Patch 1a, allow attackers to cause a denial of service (ABEND) and possibly execute arbitrary code via (1) a long user name or (2) an unknown attack related to a "special script against login." | Assigned (20030801) | None (candidate not yet proposed) | View |
Page 741 of 20943, showing 5 records out of 104715 total, starting on record 3701, ending on 3705