CVE-2006-0276
published 2006-01-18CVE-2006-0276: Multiple unspecified vulnerabilities in Oracle Collaboration Suite Release 2, version 9.0.4.2 (Oracle9i) have unspecified impact and attack vectors, as…
PriorityP337critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
5.00%
91.2th percentile
Multiple unspecified vulnerabilities in Oracle Collaboration Suite Release 2, version 9.0.4.2 (Oracle9i) have unspecified impact and attack vectors, as identified by Oracle Vuln# (1) OCS01, 2) OCS02, 3) OCS03, 4) OCS04, 5) OCS05, 6) OCS06, 7) OCS07, (8) OCS08, and (9) OCS09 in the (a) Email Server component; 10) OCS10 (and (11) OCS11 in the (b) Oracle Collaboration Suite Wireless & Voice (component; 12) OCS12 and (13) OCS13 in the (c) Oracle Content (Management SDK component; 14) OCS14 and (15) OCS15 in the (d) Oracle (Content Services component.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | collaboration_suite | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2006-0996 phpinfo() XSS issue
bugzilla·2006-03-31·CVSS 4.3
CVE-2006-0996 [MEDIUM] CVE-2006-0996 phpinfo() XSS issue
CVE-2006-0996 phpinfo() XSS issue
phpinfo() XSS issue
An XSS issue has been found in phpinfo(). The CVS commit information
is here:
http://marc.theaimsgroup.com/?l=php-cvs&m=114374620416389&w=2
This issue also affects RHEL3
This issue also affects RHEL2.1
Discussion:
There is more information here:
http://securityreason.com/achievement_securityalert/34
---
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2006-0276.html
---
Patch php-4.3.9-CVE-2006-0996.patch is incor
Bugzilla
CVE-2005-2933 imap buffer overflow
bugzilla·2005-11-29·CVSS 7.5
CVE-2005-2933 [HIGH] CVE-2005-2933 imap buffer overflow
CVE-2005-2933 imap buffer overflow
+++ This bug was initially created as a clone of Bug #169953 +++
iDEFENSE has reported a buffer overflow in the wu-imap server:
http://www.idefense.com/application/poi/display?id=313&type=vulnerabilities
An authenticated user can request a mailbox with a specially crafted name which
will overflow a buffer.
This issue also affects RHEL2.1
Discussion:
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2006-0276.html
Bugzilla
CVE-2005-3883 PHP mb_send_mail() header parsing issue
bugzilla·2005-11-29·CVSS 5.0
CVE-2005-3883 [MEDIUM] CVE-2005-3883 PHP mb_send_mail() header parsing issue
CVE-2005-3883 PHP mb_send_mail() header parsing issue
PHP mb_send_mail() header parsing issue
http://bugs.php.net/bug.php?id=35307
The mb_send_mail() function does not properly verify the "To" header
when sending mail. This could allow an attacker to inject arbitrary
headers into an outgoing mail message which could be used to relay
spam.
This issue also affects RHEL3
This issue also affects RHEL2.1
Discussion:
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2006-0276.h
http://secunia.com/advisories/18493http://secunia.com/advisories/18608http://securitytracker.com/id?1015499http://www.kb.cert.org/vuls/id/545804http://www.oracle.com/technetwork/topics/security/cpujan2006-082403.htmlhttp://www.securityfocus.com/bid/16287http://www.vupen.com/english/advisories/2006/0243http://www.vupen.com/english/advisories/2006/0323https://exchange.xforce.ibmcloud.com/vulnerabilities/24321http://secunia.com/advisories/18493http://secunia.com/advisories/18608http://securitytracker.com/id?1015499http://www.kb.cert.org/vuls/id/545804http://www.oracle.com/technetwork/topics/security/cpujan2006-082403.htmlhttp://www.securityfocus.com/bid/16287http://www.vupen.com/english/advisories/2006/0243http://www.vupen.com/english/advisories/2006/0323https://exchange.xforce.ibmcloud.com/vulnerabilities/24321
2006-01-18
Published