Oracle

Database Server

524 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.22%
  • Veröffentlicht 08.11.2007 21:46:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Buffer overflow in MDSYS.SDO_CS in Oracle Database Server 8iR3, 9iR1, 9iR2 up to 9.2.0.6, and 10gR1 up to 10.1.0.4 allows remote authenticated users to cause a denial of service (crash) and execute arbitrary code via the TRANSFORM function. NOTE: th...

  • EPSS 51.18%
  • Veröffentlicht 08.11.2007 20:46:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Buffer overflow in the XDB.XDB_PITRIG_PKG.PITRIG_DROPMETADATA procedure in Oracle 10g R2 allows remote authenticated users to execute arbitrary code via a long (1) OWNER or (2) NAME argument.

  • EPSS 0.22%
  • Veröffentlicht 18.10.2007 20:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Oracle allows remote attackers to obtain server memory contents via crafted packets, aka Oracle reference number 7892711. NOTE: as of 20071016, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a w...

  • EPSS 4.13%
  • Veröffentlicht 17.10.2007 23:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+ and 10.1.0.5 unknown impact and remote attack vectors, related to (1) Import (DB01) and (2) Advanced Queuing (DB25). NOTE: as of 20071108, Oracle has not disputed reliable researcher c...

  • EPSS 0.86%
  • Veröffentlicht 17.10.2007 23:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 have unknown impact and remote attack vectors, related to (1) the Export component (DB02), (2) Oracle Text (DB04), (3) Oracle Text (DB05), (4...

  • EPSS 6.22%
  • Veröffentlicht 17.10.2007 23:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The Core RDBMS component in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote attackers to cause a denial of service (CPU consumption) via a crafted type 6 Data packet, aka DB20.

  • EPSS 5.06%
  • Veröffentlicht 17.10.2007 23:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The GIOP service in TNS Listener in the Oracle Net Services component in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote attackers to cause a denial of service (crash) or read potentially sensitive memory via a conn...

  • EPSS 2.19%
  • Veröffentlicht 17.10.2007 23:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple SQL injection vulnerabilities in the CTXSYS Intermedia application for the Oracle Text component (CTX_DOC) in Oracle Database 10.1.0.5 and 10.2.0.3 allow remote authenticated users to execute arbitrary SQL commands via the (1) THEMES, (2) GI...

  • EPSS 0.65%
  • Veröffentlicht 17.10.2007 23:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Unspecified vulnerability in the Spatial component in Oracle Database 9.2.0.8 and 9.2.0.8DV has unknown impact and remote attack vectors, aka DB06.

  • EPSS 0.85%
  • Veröffentlicht 17.10.2007 23:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple unspecified vulnerabilities in the Workspace Manager component in Oracle Database before OWM 10.2.0.4.1, OWM 10.1.0.8.0, and OWM 9.2.0.8.0 have unknown impact and remote attack vectors, aka (1) DB08, (2) DB09, (3) DB10, (4) DB11, (5) DB12, (...