CVE Vulnerabilities

CVE-2002-1264

Published: Nov 12, 2002 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Buffer overflow in Oracle iSQL*Plus web application of the Oracle 9 database server allows remote attackers to execute arbitrary code via a long USERID parameter in the isqlplus URL.

Affected Software

Name Vendor Start Version End Version
Oracle9i Oracle 9.0 (including) 9.0 (including)
Oracle9i Oracle 9.0.1 (including) 9.0.1 (including)
Oracle9i Oracle 9.0.1.2 (including) 9.0.1.2 (including)
Oracle9i Oracle 9.0.1.3 (including) 9.0.1.3 (including)
Oracle9i Oracle 9.0.2 (including) 9.0.2 (including)
Oracle9i Oracle release_2_9.2.1 (including) release_2_9.2.1 (including)
Oracle9i Oracle release_2_9.2.2 (including) release_2_9.2.2 (including)

References