267931
|
- |
|
oracle
|
database_server
|
Cross-site scripting (XSS) vulnerability in iSQL*Plus (iSQLPlus) in Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to inject arbitrary web script or HTML via script in the "set ma…
|
CWE-79
Cross-site Scripting
|
CVE-2005-3205
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267932
|
- |
|
oracle
|
database_server
|
iSQL*Plus (isqlplus) for Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to cause a denial of service (TNS listener stop) via an HTTP request with an sid parameter that contains a …
|
NVD-CWE-Other
|
CVE-2005-3206
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267933
|
- |
|
oracle
|
forms
|
The forms servlet (f90servlet) in Oracle Forms 4.5.10.22 allows remote attackers to cause a denial of service (TNS listener stop) via a userid parameter that contains a STOP command.
|
NVD-CWE-Other
|
CVE-2005-3207
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267934
|
- |
|
aenovo
|
aenovo aenovoshop aenovowysi
|
Multiple SQL injection vulnerabilities in (1) aeNovo, (2) aeNovoShop and (3) aeNovoWYSI allow remote attackers to execute arbitrary SQL code via (a) the password parameter in control.asp, and (b) the…
|
NVD-CWE-Other
|
CVE-2005-3208
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267935
|
- |
|
aenovo
|
aenovo aenovoshop aenovowysi
|
Aenovo products (1) aeNovo, (2) aeNovoShop, and (3) aeNovoWYSI store password information in plaintext in the (a) control, (b) content, and (c) page tables, which allows attackers with database acces…
|
NVD-CWE-Other
|
CVE-2005-3209
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267936
|
- |
|
cynox
|
cyphor
|
Multiple SQL injection vulnerabilities in Cyphor 0.19 allow remote attackers to execute arbitrary SQL and obtain administrative access via (1) the fid parameter of newmsg.php, which can enable XSS at…
|
NVD-CWE-Other
|
CVE-2005-3236
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267937
|
- |
|
-
|
-
|
Cross-site scripting (XSS) vulnerability in Cyphor 0.19 allows remote attackers to inject arbitrary web script or HTML via the t_login parameter of footer.php.
|
NVD-CWE-Other
|
CVE-2005-3237
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267938
|
- |
|
skype_technologies
|
skype
|
Buffer overflow in Skype for Windows 1.1.x.0 through 1.4.x.83 allows remote attackers to execute arbitrary code via (1) callto:// and (2) skype:// links, or (3) a non-standard VCARD, possibly due to …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2005-3265
|
2017-07-11 10:33 |
2005-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267939
|
- |
|
skype_technologies
|
skype
|
Integer overflow in Skype client before 1.4.x.84 on Windows, before 1.3.x.17 on Mac OS, before 1.2.x.18 on Linux, and 1.1.x.6 and earlier allows remote attackers to cause a denial of service (crash) …
|
CWE-189
Numeric Errors
|
CVE-2005-3267
|
2017-07-11 10:33 |
2005-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267940
|
- |
|
sun
|
java_system_directory_proxy_server java_system_directory_server one_administration_server one_directory_server
|
Stack-based buffer overflow in help.cgi in the HTTP administrative interface for (1) Sun Java System Directory Server 5.2 2003Q4, 2004Q2, and 2005Q1, (2) Red Hat Directory Server and (3) Certificate …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2005-3269
|
2017-07-11 10:33 |
2005-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|