Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2002-1264EPSS 8%
Buffer overflow in Oracle iSQL*Plus web application of the Oracle 9 database server allows remote attackers to execute arbitrary code via a long USER…
Oracle9i
Mitigation only
MEDIUM 5.0
CVE-2002-1089EPSS 5%
rwcgi60 CGI program in Oracle Reports Server, by design, provides sensitive information such as the full pathname, which could enable remote attacker…
Application Server
Mitigation only
HIGH 7.5
CVE-2002-0858
catsnmp in Oracle 9i and 8i is installed with a dbsnmp user with a default dbsnmp password, which allows attackers to perform restricted database ope…
Oracle8i
Mitigation only
MEDIUM 5.0
CVE-2002-0509
Transparent Network Substrate (TNS) Listener in Oracle 9i 9.0.1.1 allows remote attackers to cause a denial of service (CPU consumption) via a single…
Oracle9i
Mitigation only
HIGH 10.0
CVE-2002-1641EPSS 9%
Multiple buffer overflows in Oracle Web Cache for Oracle 9i Application Server (9iAS) allow remote attackers to execute arbitrary code via unknown ve…
Application Server Web Cache
Mitigation only
HIGH 7.5
CVE-2001-0836EPSS 15%
Buffer overflow in Oracle9iAS Web Cache 2.0.0.1 allows remote attackers to execute arbitrary code via a long HTTP GET request.
Application Server Web Cache
Mitigation only
HIGH 7.5
CVE-2001-0419EPSS 24%
Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle application server 4.0.8.2, allo…
Application Server
No fix yet
HIGH 7.5
CVE-2001-0126
Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via t…
Oracle8i
Mitigation only
MEDIUM 5.0
CVE-1999-0784
Denial of service in Oracle TNSLSNR SQL*Net Listener via a malformed string to the listener port, aka NERP.
Database Server
No fix yet
HIGH 7.5
CVE-2001-1453EPSS 11%
Buffer overflow in libmysqlclient.so in MySQL 3.23.33 and earlier allows remote attackers to execute arbitrary code via a long host parameter.
MySQL
No fix yet
HIGH 7.2
CVE-2000-0981
MySQL Database Engine uses a weak authentication method which leaks information that could be used by a remote attacker to recover the password.
MySQL
Mitigation only
MEDIUM 5.0
CVE-2000-0576
Oracle Web Listener for AIX versions 4.0.7.0.0 and 4.0.8.1.0 allows remote attackers to cause a denial of service via a malformed URL.
Web Listener
No fix yet
HIGH 7.5
CVE-2000-0169EPSS 27%
Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'.
Application Server
Mitigation only
MEDIUM 6.2
CVE-2000-0206
The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local…
Oracle8i
Mitigation only
HIGH 7.5
CVE-2000-0148
MySQL 3.22 allows remote attackers to bypass password authentication and access a database via a short check string.
MySQL
Mitigation only
MEDIUM 6.4
CVE-2000-0045EPSS 7%
MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege.
MySQL
Mitigation only
HIGH 7.5
CVE-1999-1547EPSS 10%
Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with its HTTP-encoded (hex) equival…
Web Listener
No fix yet
MEDIUM 5.0
CVE-1999-1068
Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request.
HTTP Server
Mitigation only