|
346211
|
- |
|
oracle
|
application_server oracle9i
|
Cross-site scripting (XSS) vulnerability in Oracle XML DB 9iR2 allows remote attackers to inject arbitrary web script or HTML via the query string in an HTTP request.
|
NVD-CWE-Other
|
CVE-2005-3204
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346212
|
- |
|
oracle
|
database_server
|
Cross-site scripting (XSS) vulnerability in iSQL*Plus (iSQLPlus) in Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to inject arbitrary web script or HTML via script in the "set ma…
|
CWE-79
Cross-site Scripting
|
CVE-2005-3205
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346213
|
- |
|
oracle
|
database_server
|
iSQL*Plus (isqlplus) for Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to cause a denial of service (TNS listener stop) via an HTTP request with an sid parameter that contains a …
|
NVD-CWE-Other
|
CVE-2005-3206
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346214
|
- |
|
oracle
|
forms
|
The forms servlet (f90servlet) in Oracle Forms 4.5.10.22 allows remote attackers to cause a denial of service (TNS listener stop) via a userid parameter that contains a STOP command.
|
NVD-CWE-Other
|
CVE-2005-3207
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346215
|
- |
|
aenovo
|
aenovo aenovoshop aenovowysi
|
Multiple SQL injection vulnerabilities in (1) aeNovo, (2) aeNovoShop and (3) aeNovoWYSI allow remote attackers to execute arbitrary SQL code via (a) the password parameter in control.asp, and (b) the…
|
NVD-CWE-Other
|
CVE-2005-3208
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346216
|
- |
|
aenovo
|
aenovo aenovoshop aenovowysi
|
Aenovo products (1) aeNovo, (2) aeNovoShop, and (3) aeNovoWYSI store password information in plaintext in the (a) control, (b) content, and (c) page tables, which allows attackers with database acces…
|
NVD-CWE-Other
|
CVE-2005-3209
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346217
|
- |
|
cynox
|
cyphor
|
Multiple SQL injection vulnerabilities in Cyphor 0.19 allow remote attackers to execute arbitrary SQL and obtain administrative access via (1) the fid parameter of newmsg.php, which can enable XSS at…
|
NVD-CWE-Other
|
CVE-2005-3236
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346218
|
- |
|
-
|
-
|
Cross-site scripting (XSS) vulnerability in Cyphor 0.19 allows remote attackers to inject arbitrary web script or HTML via the t_login parameter of footer.php.
|
NVD-CWE-Other
|
CVE-2005-3237
|
2017-07-11 10:33 |
2005-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346219
|
- |
|
skype_technologies
|
skype
|
Buffer overflow in Skype for Windows 1.1.x.0 through 1.4.x.83 allows remote attackers to execute arbitrary code via (1) callto:// and (2) skype:// links, or (3) a non-standard VCARD, possibly due to …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2005-3265
|
2017-07-11 10:33 |
2005-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346220
|
- |
|
skype_technologies
|
skype
|
Integer overflow in Skype client before 1.4.x.84 on Windows, before 1.3.x.17 on Mac OS, before 1.2.x.18 on Linux, and 1.1.x.6 and earlier allows remote attackers to cause a denial of service (crash) …
|
CWE-189
Numeric Errors
|
CVE-2005-3267
|
2017-07-11 10:33 |
2005-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|