Page 4 of 33 results (0.002 seconds)

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

21 Jul 2001 — Oracle listener in Oracle 8i on Solaris allows remote attackers to cause a denial of service via a malformed connection packet with a maximum transport data size that is set to 0. • http://otn.oracle.com/deploy/security/pdf/net8_dos_alert.pdf •

CVSS: 7.5EPSS: 1%CPEs: 2EXPL: 1

03 May 2001 — Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the <<ALL FILES>> FilePermission. • http://archives.neohapsis.com/archives/bugtraq/2001-02/0255.html •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

12 Mar 2001 — Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet. • http://marc.info/?l=bugtraq&m=97906670012796&w=2 •