7.8
CVE-2004-1368
- EPSS 5.3%
- Veröffentlicht 04.08.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
ISQL*Plus in Oracle 10g Application Server allows remote attackers to execute arbitrary files via an absolute pathname in the file parameter to the load.uix script.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Oracle ≫ Application Server Version9.0.2
Oracle ≫ Application Server Version9.0.2.0.0
Oracle ≫ Application Server Version9.0.2.0.1
Oracle ≫ Application Server Version9.0.2.1
Oracle ≫ Application Server Version9.0.2.2
Oracle ≫ Application Server Version9.0.2.3
Oracle ≫ Application Server Version9.0.3
Oracle ≫ Application Server Version9.0.3.1
Oracle ≫ Application Server Version9.0.4
Oracle ≫ Application Server Version9.0.4.0
Oracle ≫ Application Server Version9.0.4.1
Oracle ≫ Collaboration Suite Versionrelease_1
Oracle ≫ E-business Suite Version11.5.1
Oracle ≫ E-business Suite Version11.5.2
Oracle ≫ E-business Suite Version11.5.3
Oracle ≫ E-business Suite Version11.5.4
Oracle ≫ E-business Suite Version11.5.5
Oracle ≫ E-business Suite Version11.5.6
Oracle ≫ E-business Suite Version11.5.7
Oracle ≫ E-business Suite Version11.5.8
Oracle ≫ E-business Suite Version11.5.9
Oracle ≫ Enterprise Manager Version9
Oracle ≫ Enterprise Manager Version9.0.1
Oracle ≫ Enterprise Manager Database Control Version10.1.2
Oracle ≫ Enterprise Manager Grid Control Version10.1.0.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.3% | 0.89 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:C/I:N/A:N
|