NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68868 | CVE-2005-3206 | iSQL*Plus (isqlplus) for Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to cause a denial of service (TNS listener stop) via an HTTP request with an sid parameter that contains a STOP command. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 68869 | CVE-2005-3207 | The forms servlet (f90servlet) in Oracle Forms 4.5.10.22 allows remote attackers to cause a denial of service (TNS listener stop) via a userid parameter that contains a STOP command. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 68870 | CVE-2005-3208 | Multiple SQL injection vulnerabilities in (1) aeNovo, (2) aeNovoShop and (3) aeNovoWYSI allow remote attackers to execute arbitrary SQL code via (a) the password parameter in control.asp, and (b) the strSQL parameter in search.asp, which can enable XSS attacks in resulting error messages. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 68871 | CVE-2005-3209 | Aenovo products (1) aeNovo, (2) aeNovoShop, and (3) aeNovoWYSI store password information in plaintext in the (a) control, (b) content, and (c) page tables, which allows attackers with database access to obtain those passwords and gain privileges. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 68872 | CVE-2005-3210 | Multiple interpretation error in unspecified versions of Kaspersky Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper. | 2 | 5.1 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 2798 of 17672, showing 5 records out of 88360 total, starting on record 13986, ending on 13990