Vulnerability index

Browse CVEs

6,843 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Collaboration Suite HIGH 10.0
CVE-2005-3454

Multiple unspecified vulnerabilities in Oracle Collaboration Suite 10g Release 1 version 10.1.1 and 9i Release 2 9.0.4.2 have unknown impact and atta…

Mitigation only
Fix from $1,950 2005-11-02
E Business Suite HIGH 10.0
CVE-2005-3455

Multiple unspecified vulnerabilities in Oracle E-Business Suite and Applications 11.5 up to 11.5.10 have unknown impact and attack vectors, as identi…

No fix yet
Fix from $1,950 2005-11-02
E Business Suite HIGH 10.0
CVE-2005-3457

Unspecified vulnerability in Oracle E-Business Suite and Applications 11.0 up to 11.5.10 has unknown impact and attack vectors, as identified by Orac…

Fix: after 11.5.10
Fix from $1,950 2005-11-02
Clinical HIGH 10.0
CVE-2005-3459

Unspecified vulnerability in Oracle E-Business Suite and Applications 4.5 up to 4.5.1 has unknown impact and attack vectors, as identified by Oracle …

No fix yet
Fix from $1,950 2005-11-02
10g Enterprise Manager Database Control HIGH 10.0
CVE-2005-3460

Unspecified vulnerability in Oracle Agent in Oracle Enterprise Manager 9.0.4.1 up to 10.1.0.4 has unknown impact and attack vectors, as identified by…

No fix yet
Fix from $1,950 2005-11-02
Peoplesoft Enterprise HIGH 10.0
CVE-2005-3462

Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46.02 has unknown impact and attack vectors, as identified by O…

Fix: after 8.46.02
Fix from $1,950 2005-11-02
Peoplesoft Enterprise HIGH 10.0
CVE-2005-3463EPSS 5%

Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46.03 has unknown impact and attack vectors, as identified by O…

Fix: after 8.46.03
Fix from $1,950 2005-11-02
Peoplesoft Enterprise HIGH 10.0
CVE-2005-3464

Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46 has unknown impact and attack vectors, as identified by Orac…

Fix: after 8.46
Fix from $1,950 2005-11-02
Peoplesoft Enterprise Customer Relationship Management HIGH 10.0
CVE-2005-3466

Unspecified vulnerability in Enterprise CRM Sales in Oracle 8.81 up to 8.9 has unknown impact and attack vectors, as identified by Oracle Vuln# CRM01.

Fix: after 8.9
Fix from $1,950 2005-11-02
Database Server HIGH 10.0
CVE-2005-3437EPSS 5%

Unspecified vulnerability in the PL/SQL component in Oracle Database Server 9i up to 10.1.0.4 has unknown impact and attack vectors, aka Oracle Vuln#…

No fix yet
Fix from $1,950 2005-11-02
Database Server HIGH 10.0
CVE-2005-3438EPSS 6%

Multiple unspecified vulnerabilities in Oracle Database Server 9i up to 10.1.0.4.2 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB04 …

Fix: after 10.1.0.4.2
Fix from $1,950 2005-11-02
Database Server HIGH 10.0
CVE-2005-3440EPSS 5%

Unspecified vulnerability in Database Scheduler in Oracle Database Server 10g up to 10.1.0.3 has unknown impact and attack vectors, aka Oracle Vuln# …

No fix yet
Fix from $1,950 2005-11-02
Database Server HIGH 10.0
CVE-2005-3443

Unspecified vulnerability in the Spatial component in Oracle Database Server from 9i up to 10.1.0.3 has unknown impact and attack vectors, aka Oracle…

No fix yet
Fix from $1,950 2005-11-02
Database Server HIGH 10.0
CVE-2005-3444EPSS 5%

Multiple unspecified vulnerabilities in the Programmatic Interface in Oracle Database Server from 8i up to 9.2.0.5 have unknown impact and attack vec…

No fix yet
Fix from $1,950 2005-11-02
Html Db MEDIUM 6.8
CVE-2005-3202EPSS 11%

Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTML DB (HTMLDB) 1.3 through 1.3.6 allow remote attackers to inject arbitrary web scrip…

No fix yet
Fix from $1,600 2005-10-14
Database Server MEDIUM 5.0
CVE-2005-3206EPSS 22%

iSQL*Plus (isqlplus) for Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to cause a denial of service (TNS listener stop) via an H…

Patch available
Fix from $1,600 2005-10-14
Forms MEDIUM 5.0
CVE-2005-3207EPSS 20%

The forms servlet (f90servlet) in Oracle Forms 4.5.10.22 allows remote attackers to cause a denial of service (TNS listener stop) via a userid parame…

Patch available
Fix from $1,600 2005-10-14
Reports HIGH 7.5
CVE-2005-2983

SQL injection vulnerability in Oracle Reports that use Lexical References allows remote attackers to execute arbitrary SQL commands via the values in…

No fix yet
Fix from $1,950 2005-09-20
Weblogic Portal MEDIUM 5.0
CVE-2005-2680

Unspecified vulnerability in BEA WebLogic Portal 8.1 through SP4, when using entitlements, allows remote attackers to bypass access restrictions for …

Patch available
Fix from $1,600 2005-08-23
MySQL HIGH 8.5
CVE-2005-2572

MySQL, when running on Windows, allows remote authenticated users with insert privileges on the mysql.func table to cause a denial of service (server…

Mitigation only
Fix from $1,950 2005-08-16
Forms HIGH 7.2
CVE-2005-2372

Oracle Forms 4.5 through 10g starts form executables from arbitrary directories and executes them as the Oracle or System user, which allows attacker…

No fix yet
Fix from $1,950 2005-07-26
Reports MEDIUM 5.0
CVE-2005-2371EPSS 22%

Directory traversal vulnerability in Oracle Reports 6.0, 6i, 9i, and 10g allows remote attackers to overwrite arbitrary files via (1) "..", (2) Windo…

Mitigation only
Fix from $1,600 2005-07-26
Reports MEDIUM 5.0
CVE-2005-2378EPSS 9%

Directory traversal vulnerability in Oracle Reports allows remote attackers to read arbitrary files via an absolute or relative path to the (1) CUSTO…

No fix yet
Fix from $1,600 2005-07-26
Forms Builder MEDIUM 5.5
CVE-2005-2293

Oracle Formsbuilder 9.0.4 stores database usernames and passwords in a temporary file, which is not deleted after it is used, which allows local user…

Patch available
Fix from $1,600 2005-07-18
Application Server HIGH 7.5
CVE-2005-1495

Oracle Database 9i and 10g disables Fine Grained Audit (FGA) after the SYS user executes a SELECT statement on an FGA object, which makes it easier f…

No fix yet
Fix from $1,950 2005-05-11
Application Server HIGH 7.5
CVE-2005-1383EPSS 31%

The OHS component 1.0.2 through 10.x, when UseWebcacheIP is disabled, in Oracle Application Server allows remote attackers to bypass HTTP Server mod_…

Patch available
Fix from $1,950 2005-05-03
Application Server Web Cache MEDIUM 6.8
CVE-2005-1381EPSS 20%

Multiple cross-site scripting (XSS) vulnerabilities in Oracle Webcache 9i allow remote attackers to inject arbitrary web script or HTML via the (1) c…

No fix yet
Fix from $1,600 2005-05-03
Application Server Web Cache MEDIUM 5.0
CVE-2005-1382EPSS 7%

The webcacheadmin module in Oracle Webcache 9i allows remote attackers to corrupt arbitrary files via a full pathname in the cache_dump_file paramete…

No fix yet
Fix from $1,600 2005-05-03
Forms HIGH 7.5
CVE-2005-1178

SQL injection vulnerability in Oracle Forms 10g allows remote attackers to execute arbitrary SQL commands via the Query/Where feature.

Mitigation only
Fix from $1,950 2005-05-02
Database Server HIGH 7.5
CVE-2005-1197

SQL injection vulnerability in the SYS.DBMS_CDC_IPUBLISH.CREATE_SCN_CHANGE_SET procedure in Oracle Database Server 10g allows remote attackers to exe…

Patch available
Fix from $1,950 2005-05-02