4.6
CVSSv2

CVE-2000-0987

Published: 19/12/2000 Updated: 19/12/2017
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 470
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle oracle8i 8.1.6

oracle internet directory 2.0.6

Exploits

/* Exploit Code for oidldapd in Oracle 816 (8ir2) for Linux I tested in RH 62 and 61 This code is a bullshit (i know please no comments about ;-)) If someone exports this to Sparc please tell me synopsis: buffer overflow in oidldapd impact: any user gain euid=oracle Dedicated to PlazaSite guys Klink Klink Team Panxeta, ...
source: wwwsecurityfocuscom/bid/1828/info Oracle Internet Directory 206 is a pre-alpha development release, available as both an addon package and in the Oracle Database Software release 816 A vulnerability has been found in the oidldap binary within the package A buffer overflow exists in the oidldap binary, which is setuid oracle ...