CVE-2016-3504
- EPSS 1.61%
- Veröffentlicht 21.07.2016 10:12:57
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in the Oracle JDeveloper component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, 11.1.2.4.0, 12.1.3.0.0, and 12.2.1.0.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related...
CVE-2008-2623
- EPSS 0.18%
- Veröffentlicht 14.01.2009 02:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Oracle JDeveloper component in Oracle Application Server 10.1.2.3 allows local users to affect confidentiality via unknown vectors.
CVE-2008-2588
- EPSS 0.18%
- Veröffentlicht 14.10.2008 21:11:10
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Oracle JDeveloper component in Oracle Application Server 10.1.2.2 allows local users to affect confidentiality via unknown vectors.
CVE-2005-2291
- EPSS 0.8%
- Veröffentlicht 18.07.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 passes the cleartext password as a parameter when starting sqlplus, which allows local users to gain sensitive information.
CVE-2005-2292
- EPSS 0.33%
- Veröffentlicht 18.07.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 stores cleartext passwords in (1) IDEConnections.xml, (2) XSQLConfig.xml and (3) settings.xml, which allows local users to obtain sensitive information.