NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68863 | CVE-2005-3201 | SQL injection vulnerability in news.php for Utopia News Pro (UNP) 1.1.3, when magic_quotes_gpc is disabled and register_globals is enabled, allows remote attackers to execute arbitrary SQL via the newsid parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 68864 | CVE-2005-3202 | Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTML DB (HTMLDB) 1.3 through 1.3.6 allow remote attackers to inject arbitrary web script or HTML, and subsequently execute SQL statements via the (1) p or (2) p_t02 parameters. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 68865 | CVE-2005-3203 | The manual installation of Oracle HTML DB (HTMLDB) 1.3 through 1.3.6 stores the SYS password in install.lst in plaintext, which allows local users to gain privileges. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 68866 | CVE-2005-3204 | Cross-site scripting (XSS) vulnerability in Oracle XML DB 9iR2 allows remote attackers to inject arbitrary web script or HTML via the query string in an HTTP request. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 68867 | CVE-2005-3205 | Cross-site scripting (XSS) vulnerability in iSQL*Plus (iSQLPlus) in Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to inject arbitrary web script or HTML via script in the "set markup HTML TABLE" command, which is executed when the user selects a table. | 2 | 3.5 | Low | 2017-07-18 | 2017-07-10 | View |
Page 2797 of 17672, showing 5 records out of 88360 total, starting on record 13981, ending on 13985