CVE-2007-2121
https://notcve.org/view.php?id=CVE-2007-2121
Unspecified vulnerability in the COREid Access component in Oracle Application Server 7.0.4.4 has unknown impact and attack vectors, aka AS02. Vulnerabilidad no especificada en el componente COREid Access en Oracle Application Server 7.0.4.4 tiene un impacto desconocido y vectores de ataque, también conocido como AS02. • http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.html http://www.red-database-security.com/advisory/oracle_cpu_apr_2007.html http://www.securityfocus.com/archive/1/466329/100/200/threaded http://www.securityfocus.com/bid/23532 http://www.securitytracker.com/id?1017927 http://www.us-cert.gov/cas/techalerts/TA07-108A.html http://www.vupen.com/english/advisories/2007/1426 •
CVE-2007-2124
https://notcve.org/view.php?id=CVE-2007-2124
Unspecified vulnerability in the Portal component in Oracle Application Server 10.1.4.1.0 has unknown impact and remote attack vectors, aka AS05. Vulnerabilidad no especificada en el componente Portal en Oracle Application Server 10.1.4.1.0 tiene impacto y vectores de ataque desconocidos, también conocido como AS05. • http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.html http://www.red-database-security.com/advisory/oracle_cpu_apr_2007.html http://www.securityfocus.com/archive/1/466329/100/200/threaded http://www.securityfocus.com/bid/23532 http://www.securitytracker.com/id?1017927 http://www.us-cert.gov/cas/techalerts/TA07-108A.html http://www.vupen.com/english/advisories/2007/1426 •
CVE-2007-1609
https://notcve.org/view.php?id=CVE-2007-1609
Cross-site scripting (XSS) vulnerability in servlet/Spy in Dynamic Monitoring Services (DMS) in Oracle Application Server (OAS) 10g 10.1.2.0.0 allows remote attackers to inject arbitrary web script or HTML via the table parameter. NOTE: This may be related to CVE-2002-0563. Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en servlet/Spy de Dynamic Monitoring Services (DMS) en Oracle Application Server (OAS) 10g 10.1.2.0.0 permite a atacantes remotos inyectar scripts web o HTML de su elección a través del parámetro table. NOTA: Esta vulnerabilidad puede estar relacionada con CVE-2002-0563. • http://secunia.com/advisories/24554 http://securityreason.com/securityalert/2474 http://www.osvdb.org/33521 http://www.securityfocus.com/archive/1/463285/100/0/threaded http://www.securityfocus.com/archive/1/496045/100/0/threaded http://www.securityfocus.com/bid/23102 http://www.vupen.com/english/advisories/2007/1078 https://exchange.xforce.ibmcloud.com/vulnerabilities/33146 •
CVE-2007-1506 – Oracle Portal 10g - 'P_OldURL' Cross-Site Scripting
https://notcve.org/view.php?id=CVE-2007-1506
Cross-site scripting (XSS) vulnerability in PORTAL.wwv_main.render_warning_screen in the Oracle Portal 10g allows remote attackers to inject arbitrary web script or HTML via the (1) p_oldurl and (2) p_newurl parameters. Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en PORTAL.wwv_main.render_warning_screen en Oracle Portal 10g permite a atacantes remotos inyectar secuencias de comandos web o HTML de su elección a través de los parámetros (1) p_oldurl y (2) p_newurl. • https://www.exploit-db.com/exploits/29749 http://osvdb.org/34299 http://securityreason.com/securityalert/2463 http://www.securityfocus.com/archive/1/463012/100/0/threaded http://www.securityfocus.com/bid/22999 https://exchange.xforce.ibmcloud.com/vulnerabilities/33028 •
CVE-2007-0287
https://notcve.org/view.php?id=CVE-2007-0287
Unspecified vulnerability in Oracle Application Server 9.0.4.3, 10.1.2.0.0, and 10.1.2.0.2; and Collaboration Suite 9.0.4.2 and 10.1.2; has unknown impact and attack vectors related to Containers for J2EE, aka OC4J08. Vulnerabilidad no especificada en Oracle Application Server 9.0.4.3, 10.1.2.0.0, y 10.1.2.0.2; y Collaboration Suite 9.0.4.2 y 10.1.2; tienen impacto y vectores de ataque desconocidos relacionados con los Contenedores para J2EE, también conocido como OC4J08. • http://osvdb.org/32902 http://secunia.com/advisories/23794 http://securitytracker.com/id?1017522 http://www.oracle.com/technetwork/topics/security/cpujan2007-101493.html http://www.securityfocus.com/bid/22083 http://www.us-cert.gov/cas/techalerts/TA07-017A.html https://exchange.xforce.ibmcloud.com/vulnerabilities/31541 •