CVE-2005-3447
https://notcve.org/view.php?id=CVE-2005-3447
Unspecified vulnerability in Single Sign-On in Oracle Database Server 10g up to 10.1.0.4.2 and Application Server 9.0.2.3 up to 9.0.4.2 has unknown impact and attack vectors, aka Oracle Vuln# DB33 and AS08. • http://secunia.com/advisories/17250 http://www.kb.cert.org/vuls/id/210524 http://www.oracle.com/technetwork/topics/security/cpuoct2005-090497.html http://www.securityfocus.com/bid/15134 http://www.us-cert.gov/cas/techalerts/TA05-292A.html •
CVE-2005-1197
https://notcve.org/view.php?id=CVE-2005-1197
SQL injection vulnerability in the SYS.DBMS_CDC_IPUBLISH.CREATE_SCN_CHANGE_SET procedure in Oracle Database Server 10g allows remote attackers to execute arbitrary SQL commands via the CHANGE_SET_NAME parameter. • http://marc.info/?l=bugtraq&m=111385690419118&w=2 http://www.kb.cert.org/vuls/id/948486 http://www.oracle.com/technology/deploy/security/pdf/cpuapr2005.pdf http://www.us-cert.gov/cas/techalerts/TA05-117A.html •