Vulnerability index

Browse CVEs

2,358 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2002-1264EPSS 8% Buffer overflow in Oracle iSQL*Plus web application of the Oracle 9 database server allows remote attackers to execute arbitrary code via a long USER… Oracle9i Mitigation only Fix from $1,9502002-11-12 MEDIUM 5.0 CVE-2002-1089EPSS 5% rwcgi60 CGI program in Oracle Reports Server, by design, provides sensitive information such as the full pathname, which could enable remote attacker… Application Server Mitigation only Fix from $1,6002002-10-04 HIGH 7.5 CVE-2002-0858 catsnmp in Oracle 9i and 8i is installed with a dbsnmp user with a default dbsnmp password, which allows attackers to perform restricted database ope… Oracle8i Mitigation only Fix from $1,9502002-09-05 MEDIUM 5.0 CVE-2002-0509 Transparent Network Substrate (TNS) Listener in Oracle 9i 9.0.1.1 allows remote attackers to cause a denial of service (CPU consumption) via a single… Oracle9i Mitigation only Fix from $1,6002002-08-12 HIGH 10.0 CVE-2002-1641EPSS 9% Multiple buffer overflows in Oracle Web Cache for Oracle 9i Application Server (9iAS) allow remote attackers to execute arbitrary code via unknown ve… Application Server Web Cache Mitigation only Fix from $1,9502002-05-27 HIGH 7.5 CVE-2001-0836EPSS 15% Buffer overflow in Oracle9iAS Web Cache 2.0.0.1 allows remote attackers to execute arbitrary code via a long HTTP GET request. Application Server Web Cache Mitigation only Fix from $1,9502001-12-06 HIGH 7.5 CVE-2001-0419EPSS 24% Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle application server 4.0.8.2, allo… Application Server No fix yet Fix from $1,9502001-07-02 HIGH 7.5 CVE-2001-0126 Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via t… Oracle8i Mitigation only Fix from $1,9502001-03-12 MEDIUM 5.0 CVE-1999-0784 Denial of service in Oracle TNSLSNR SQL*Net Listener via a malformed string to the listener port, aka NERP. Database Server No fix yet Fix from $1,6002001-03-12 HIGH 7.5 CVE-2001-1453EPSS 11% Buffer overflow in libmysqlclient.so in MySQL 3.23.33 and earlier allows remote attackers to execute arbitrary code via a long host parameter. MySQL No fix yet Fix from $1,9502001-02-09 HIGH 7.2 CVE-2000-0981 MySQL Database Engine uses a weak authentication method which leaks information that could be used by a remote attacker to recover the password. MySQL Mitigation only Fix from $1,9502000-12-19 MEDIUM 5.0 CVE-2000-0576 Oracle Web Listener for AIX versions 4.0.7.0.0 and 4.0.8.1.0 allows remote attackers to cause a denial of service via a malformed URL. Web Listener No fix yet Fix from $1,6002000-07-05 HIGH 7.5 CVE-2000-0169EPSS 27% Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'. Application Server Mitigation only Fix from $1,9502000-03-15 MEDIUM 6.2 CVE-2000-0206 The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local… Oracle8i Mitigation only Fix from $1,6002000-03-05 HIGH 7.5 CVE-2000-0148 MySQL 3.22 allows remote attackers to bypass password authentication and access a database via a short check string. MySQL Mitigation only Fix from $1,9502000-02-08 MEDIUM 6.4 CVE-2000-0045EPSS 7% MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege. MySQL Mitigation only Fix from $1,6002000-01-11 HIGH 7.5 CVE-1999-1547EPSS 10% Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with its HTTP-encoded (hex) equival… Web Listener No fix yet Fix from $1,9501999-11-25 MEDIUM 5.0 CVE-1999-1068 Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request. HTTP Server Mitigation only Fix from $1,6001997-07-23