269151
|
- |
|
oracle
|
application_server collaboration_suite e-business_suite enterprise_manager enterprise_manager_database_control enterprise_manager_grid_control oracle10g oracle8i oracle9i
|
Extproc in Oracle 9i and 10g does not require authentication to load a library or execute a function, which allows local users to execute arbitrary commands as the Oracle user.
|
NVD-CWE-Other
|
CVE-2004-1365
|
2017-07-11 10:30 |
2004-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269152
|
- |
|
oracle
|
application_server collaboration_suite e-business_suite enterprise_manager enterprise_manager_database_control enterprise_manager_grid_control oracle10g oracle8i oracle9i
|
Oracle 10g Database Server stores the password for the SYSMAN account in cleartext in the world-readable emoms.properties file, which could allow local users to gain DBA privileges.
|
CWE-255
Credentials Management
|
CVE-2004-1366
|
2017-07-11 10:30 |
2004-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269153
|
- |
|
oracle
|
application_server collaboration_suite e-business_suite enterprise_manager enterprise_manager_database_control enterprise_manager_grid_control oracle10g oracle8i oracle9i
|
ISQL*Plus in Oracle 10g Application Server allows remote attackers to execute arbitrary files via an absolute pathname in the file parameter to the load.uix script.
|
NVD-CWE-noinfo
|
CVE-2004-1368
|
2017-07-11 10:30 |
2004-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269154
|
- |
|
oracle
|
application_server collaboration_suite e-business_suite enterprise_manager enterprise_manager_database_control enterprise_manager_grid_control oracle10g oracle8i oracle9i
|
The TNS Listener in Oracle 10g allows remote attackers to cause a denial of service (listener crash) via a malformed service_register_NSGR request containing a value that is used as an invalid offset…
|
NVD-CWE-Other
|
CVE-2004-1369
|
2017-07-11 10:30 |
2004-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269155
|
- |
|
oracle
|
application_server collaboration_suite e-business_suite enterprise_manager enterprise_manager_database_control enterprise_manager_grid_control oracle10g oracle8i oracle9i
|
Multiple SQL injection vulnerabilities in PL/SQL procedures that run with definer rights in Oracle 9i and 10g allow remote attackers to execute arbitrary SQL commands and gain privileges via (1) DBMS…
|
NVD-CWE-Other
|
CVE-2004-1370
|
2017-07-11 10:30 |
2004-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269156
|
- |
|
oracle
|
application_server collaboration_suite database_server e-business_suite enterprise_manager enterprise_manager_database_control enterprise_manager_grid_control oracle10g oracle…
|
Stack-based buffer overflow in Oracle 9i and 10g allows remote attackers to execute arbitrary code via a long token in the text of a wrapped procedure.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2004-1371
|
2017-07-11 10:30 |
2004-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269157
|
- |
|
ibm
|
db2_universal_database
|
Multiple stack-based buffer overflows in IBM DB2 7.x and 8.1 allow local users to execute arbitrary code via (1) a long third argument to the rec2xml function or (2) a long filename argument to the g…
|
NVD-CWE-Other
|
CVE-2004-1372
|
2017-07-11 10:30 |
2004-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269158
|
- |
|
nullsoft
|
shoutcast_server
|
Format string vulnerability in SHOUTcast 1.9.4 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via format string specifiers in a content URL, as de…
|
NVD-CWE-Other
|
CVE-2004-1373
|
2017-07-11 10:30 |
2004-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269159
|
- |
|
gnu turbolinux
|
a2ps turbolinux_home turbolinux_server turbolinux_workstation
|
The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwrite arbitrary files via a symlink attack on temporary files.
|
NVD-CWE-Other
|
CVE-2004-1377
|
2017-07-11 10:30 |
2004-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269160
|
- |
|
jabberstudio
|
jabberd jadc2s
|
The expat XML parser code, as used in the open source Jabber (jabberd) 1.4.3 and earlier, jadc2s 0.9.0 and earlier, and possibly other packages, allows remote attackers to cause a denial of service (…
|
NVD-CWE-Other
|
CVE-2004-1378
|
2017-07-11 10:30 |
2004-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|