Skip to main content

Vendor/product archive

oracle / html_db CVEs

Beta · best-effort

2 CVEs tagged to oracle / html_db0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2005-3202

Published Oct 14, 2005

Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTML DB (HTMLDB) 1.3 through 1.3.6 allow remote attackers to inject arbitrary web script or HTML, and subsequently ex…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-3203

Published Oct 14, 2005

The manual installation of Oracle HTML DB (HTMLDB) 1.3 through 1.3.6 stores the SYS password in install.lst in plaintext, which allows local users to gain privileges.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1