VYPR

Database Server

by Oracle Corporation

CVEs (629)

  • CVE-2002-0856Sep 5, 2002
    risk 0.00cvss —epss 0.03

    SQL*NET listener for Oracle Net Oracle9i 9.0.x and 9.2 allows remote attackers to cause a denial of service (crash) via certain debug requests that are not properly handled by the debugging feature.

  • CVE-2002-0571Jul 3, 2002
    risk 0.00cvss —epss 0.03

    Oracle Oracle9i database server 9.0.1.x allows local users to access restricted data via a SQL query using ANSI outer join syntax.

  • CVE-2001-0831Dec 6, 2001
    risk 0.00cvss —epss 0.01

    Unknown vulnerability in Oracle Label Security in Oracle 8.1.7 and 9.0.1, when audit functionality, SET_LABEL, or SQL*Predicate is being used, allows local users to gain additional access.

  • CVE-2001-0832Dec 6, 2001
    risk 0.00cvss —epss 0.00

    Vulnerability in Oracle 8.0.x through 9.0.1 on Unix allows local users to overwrite arbitrary files, possibly via a symlink attack or incorrect file permissions in (1) the ORACLE_HOME/rdbms/log directory or (2) an alternate directory as specified in the ORACLE_HOME environmental…

  • CVE-2001-0942Nov 29, 2001
    risk 0.00cvss —epss 0.01

    dbsnmp in Oracle 8.1.6 and 8.1.7 uses the ORACLE_HOME environment variable to find and execute the dbsnmp program, which allows local users to execute arbitrary programs by pointing the ORACLE_HOME to an alternate directory that contains a malicious version of dbsnmp.

  • CVE-2001-1041Aug 31, 2001
    risk 0.00cvss —epss 0.01

    oracle program in Oracle 8.0.x, 8.1.x and 9.0.1 allows local users to overwrite arbitrary files via a symlink attack on an Oracle log trace (.trc) file that is created in an alternate home directory identified by the ORACLE_HOME environment variable.

  • CVE-2001-0943Aug 31, 2001
    risk 0.00cvss —epss 0.02

    dbsnmp in Oracle 8.0.5 and 8.1.5, under certain conditions, trusts the PATH environment variable to find and execute the (1) chown or (2) chgrp commands, which allows local users to execute arbitrary code by modifying the PATH to point to Trojan Horse programs.

  • CVE-2001-0515Jul 21, 2001
    risk 0.00cvss —epss 0.02

    Oracle Listener in Oracle 7.3 and 8i allows remote attackers to cause a denial of service via a malformed connection packet with a large offset_to_data value.

  • CVE-1999-0784Mar 12, 2001
    risk 0.00cvss —epss 0.03

    Denial of service in Oracle TNSLSNR SQL*Net Listener via a malformed string to the listener port, aka NERP.

Page 32 of 32