Oracle 8i and 9i with PL/SQL package for External Procedures (EXTPROC) allows remote attackers to bypass authentication and execute arbitrary functions by using the TNS Listener to directly connect to the EXTPROC process.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Database_server | Oracle | 8.0.1 (including) | 8.0.1 (including) |
Database_server | Oracle | 8.0.2 (including) | 8.0.2 (including) |
Database_server | Oracle | 8.0.3 (including) | 8.0.3 (including) |
Database_server | Oracle | 8.0.4 (including) | 8.0.4 (including) |
Database_server | Oracle | 8.0.5 (including) | 8.0.5 (including) |
Database_server | Oracle | 8.0.5.1 (including) | 8.0.5.1 (including) |
Database_server | Oracle | 8.0.6 (including) | 8.0.6 (including) |
Database_server | Oracle | 8.1.5 (including) | 8.1.5 (including) |
Database_server | Oracle | 8.1.6 (including) | 8.1.6 (including) |
Database_server | Oracle | 8.1.7 (including) | 8.1.7 (including) |
Database_server | Oracle | 8.1.7.0.0 (including) | 8.1.7.0.0 (including) |
Oracle8i | Oracle | 8.1.5 (including) | 8.1.5 (including) |
Oracle8i | Oracle | 8.1.6 (including) | 8.1.6 (including) |
Oracle8i | Oracle | 8.1.7 (including) | 8.1.7 (including) |
Oracle8i | Oracle | 8.1.7.1 (including) | 8.1.7.1 (including) |
Oracle8i | Oracle | enterprise_8.0.5.0.0 (including) | enterprise_8.0.5.0.0 (including) |
Oracle8i | Oracle | enterprise_8.0.6.0.0 (including) | enterprise_8.0.6.0.0 (including) |
Oracle8i | Oracle | enterprise_8.0.6.0.1 (including) | enterprise_8.0.6.0.1 (including) |
Oracle8i | Oracle | enterprise_8.1.5.0.0 (including) | enterprise_8.1.5.0.0 (including) |
Oracle8i | Oracle | enterprise_8.1.5.0.2 (including) | enterprise_8.1.5.0.2 (including) |
Oracle8i | Oracle | enterprise_8.1.5.1.0 (including) | enterprise_8.1.5.1.0 (including) |
Oracle8i | Oracle | enterprise_8.1.6.0.0 (including) | enterprise_8.1.6.0.0 (including) |
Oracle8i | Oracle | enterprise_8.1.6.1.0 (including) | enterprise_8.1.6.1.0 (including) |
Oracle8i | Oracle | enterprise_8.1.7.0.0 (including) | enterprise_8.1.7.0.0 (including) |
Oracle8i | Oracle | enterprise_8.1.7.1.0 (including) | enterprise_8.1.7.1.0 (including) |
Oracle9i | Oracle | 9.0 (including) | 9.0 (including) |
Oracle9i | Oracle | 9.0.1 (including) | 9.0.1 (including) |