CVE Database · CVE-2005-2983
CVSS v3.1
N/A
EPSS
2.18%
Published
Sep 20, 2005
Modified
Jun 16, 2026
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
SQL injection vulnerability in Oracle Reports that use Lexical References allows remote attackers to execute arbitrary SQL commands via the values in the parameter form that appears when the paramform parameter is set to yes.
Weaknesses (CWE)
Affected Products (1)
References (6)