CVE-2004-0543
published 2004-08-06CVE-2004-0543: Multiple SQL injection vulnerabilities in Oracle Applications 11.0 and Oracle E-Business Suite 11.5.1 through 11.5.8 allow remote attackers to execute…
PriorityP344critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
7.02%
93.5th percentile
Multiple SQL injection vulnerabilities in Oracle Applications 11.0 and Oracle E-Business Suite 11.5.1 through 11.5.8 allow remote attackers to execute arbitrary SQL procedures and queries.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | applications | — | — |
| oracle | e-business_suite | — | — |
| oracle | e-business_suite | — | — |
| oracle | e-business_suite | — | — |
| oracle | e-business_suite | — | — |
| oracle | e-business_suite | — | — |
| oracle | e-business_suite | — | — |
| oracle | e-business_suite | — | — |
| oracle | e-business_suite | — | — |
| oracle | e-business_suite | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jvrp-gpvq-2crp: Multiple SQL injection vulnerabilities in Oracle Applications 11
ghsa_unreviewed·2022-04-29
CVE-2004-0543 [HIGH] GHSA-jvrp-gpvq-2crp: Multiple SQL injection vulnerabilities in Oracle Applications 11
Multiple SQL injection vulnerabilities in Oracle Applications 11.0 and Oracle E-Business Suite 11.5.1 through 11.5.8 allow remote attackers to execute arbitrary SQL procedures and queries.
Red Hat
CVE-2005-1730: Multiple vulnerabilities in the OpenSSL ASN
vendor_redhat·CVSS 5.0
CVE-2005-1730 [MEDIUM] CVE-2005-1730: Multiple vulnerabilities in the OpenSSL ASN
Multiple vulnerabilities in the OpenSSL ASN.1 parser, as used in Novell iManager 2.0.2, allows remote attackers to cause a denial of service (NULL pointer dereference) via crafted packets, as demonstrated by "OpenSSL ASN.1 brute forcer." NOTE: this issue might overlap CVE-2004-0079, CVE-2004-0081, or CVE-2004-0112.
Statement: Based on our research we believe that the "OpenSSL ASN.1 brute forcer." is actually exploiting flaws CVE-2003-0543, CVE-2003-0544, CVE-2003-0545. Those issues are all addressed in Red Hat Enterprise Linux and therefore CVE-2005-1730 is a duplicate assignment.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://archives.neohapsis.com/archives/vulnwatch/2004-q2/0032.htmlhttp://marc.info/?l=bugtraq&m=108638417302229&w=2http://otn.oracle.com/deploy/security/pdf/2004alert67.pdfhttp://www.ciac.org/ciac/bulletins/o-153.shtmlhttp://www.integrigy.com/alerts/OraAppsSQLInjection.htmhttp://www.kb.cert.org/vuls/id/961579http://www.securityfocus.com/bid/10465http://www.us-cert.gov/cas/techalerts/TA04-160A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/16324http://archives.neohapsis.com/archives/vulnwatch/2004-q2/0032.htmlhttp://marc.info/?l=bugtraq&m=108638417302229&w=2http://otn.oracle.com/deploy/security/pdf/2004alert67.pdfhttp://www.ciac.org/ciac/bulletins/o-153.shtmlhttp://www.integrigy.com/alerts/OraAppsSQLInjection.htmhttp://www.kb.cert.org/vuls/id/961579http://www.securityfocus.com/bid/10465http://www.us-cert.gov/cas/techalerts/TA04-160A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/16324
2004-08-06
Published