Oracle

Database Server

515 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 91.95%
  • Published 11.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Cross-site scripting (XSS) vulnerability in the default error page of Apache 2.0 before 2.0.43, and 1.3.x up to 1.3.26, when UseCanonicalName is "Off" and support for wildcard DNS is present, allows remote attackers to execute script as other web pag...

  • EPSS 3.78%
  • Published 11.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflows in the ApacheBench benchmark support program (ab.c) in Apache before 1.3.27, and Apache 2.x before 2.0.43, allow a malicious web server to cause a denial of service and possibly execute arbitrary code via a long response.

  • EPSS 0.74%
  • Published 05.09.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

SQL*NET listener for Oracle Net Oracle9i 9.0.x and 9.2 allows remote attackers to cause a denial of service (crash) via certain debug requests that are not properly handled by the debugging feature.

  • EPSS 2.31%
  • Published 05.09.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Format string vulnerabilities in Oracle Listener Control utility (lsnrctl) for Oracle 9.2 and 9.0, 8.1, and 7.3.4, allow remote attackers to execute arbitrary code on the Oracle DBA system by placing format strings into certain entries in the listene...

  • EPSS 1.76%
  • Published 03.07.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Oracle 8i and 9i with PL/SQL package for External Procedures (EXTPROC) allows remote attackers to bypass authentication and execute arbitrary functions by using the TNS Listener to directly connect to the EXTPROC process.

  • EPSS 0.35%
  • Published 06.12.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

Unknown vulnerability in Oracle Label Security in Oracle 8.1.7 and 9.0.1, when audit functionality, SET_LABEL, or SQL*Predicate is being used, allows local users to gain additional access.

  • EPSS 0.24%
  • Published 06.12.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

Vulnerability in Oracle 8.0.x through 9.0.1 on Unix allows local users to overwrite arbitrary files, possibly via a symlink attack or incorrect file permissions in (1) the ORACLE_HOME/rdbms/log directory or (2) an alternate directory as specified in ...

  • EPSS 0.45%
  • Published 06.12.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in otrcrep in Oracle 8.0.x through 9.0.1 allows local users to execute arbitrary code via a long ORACLE_HOME environment variable, aka the "Oracle Trace Collection Security Vulnerability."

  • EPSS 0.38%
  • Published 30.11.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in dbsnmp in Oracle 8.0.6 through 9.0.1 allows local users to execute arbitrary code via a long ORACLE_HOME environment variable.

  • EPSS 0.3%
  • Published 29.11.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

dbsnmp in Oracle 8.1.6 and 8.1.7 uses the ORACLE_HOME environment variable to find and execute the dbsnmp program, which allows local users to execute arbitrary programs by pointing the ORACLE_HOME to an alternate directory that contains a malicious ...