VendorsOracleoracle8iall versions
Vulnerabilities

Oracle oracle8i

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

46CVEs
CVE-2000-1180
Buffer overflow in cmctl program in Oracle 8.1.5 Connection Manager Control allows local users to gain privileges via a long command line argument.
Published 2001-05-07 · Modified
4.61 PoCEPSS 0.023
CVE-2000-0987
Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.
Published 2000-11-29 · Modified
4.62 PoCEPSS 0.014
CVE-1999-0711
The oratclsh interpreter in Oracle 8.x Intelligent Agent for Unix allows local users to execute Tcl commands as root.
Published 2000-04-18 · Modified
4.61 PoCEPSS 0.012
CVE-1999-0888
dbsnmp in Oracle Intelligent Agent allows local users to gain privileges by setting the ORACLE_HOME environmental variable, which dbsnmp uses to find the nmiconf.tcl script.
Published 2000-04-18 · Modified
4.62 PoCEPSS 0.011
CVE-2004-1367
Oracle 10g Database Server, when installed with a password that contains an exclamation point ("!") for the (1) DBSNMP or (2) SYSMAN user, generates an error that logs the password in the world-readable postDBCreation.log file, which could allow local users to obtain that password and use it against SYS or SYSTEM accounts, which may have been installed with the same password.
Published 2005-01-19 · Modified
4.4EPSS 0.073
CVE-2002-0568
Oracle 9i Application Server stores XSQL and SOAP configuration files insecurely, which allows local users to obtain sensitive information including usernames and passwords by requesting (1) XSQLConfig.xml or (2) soapConfig.xml through a virtual directory.
Published 2002-06-11 · Modified
2.1EPSS 0.752
← Prev2 / 2