Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
4.6
CVE-2005-2291
- EPSS 0.51%
- Veröffentlicht 18.07.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:14:37
Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 passes the cleartext password as a parameter when starting sqlplus, which allows local users to gain sensitive information.
2.1
CVE-2005-2292
- EPSS 0.87%
- Veröffentlicht 18.07.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:14:37
Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 stores cleartext passwords in (1) IDEConnections.xml, (2) XSQLConfig.xml and (3) settings.xml, which allows local users to obtain sensitive information.