4.6
CVSSv2

CVE-2000-1180

Published: 09/01/2001 Updated: 03/05/2018
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in cmctl program in Oracle 8.1.5 Connection Manager Control allows local users to gain privileges via a long command line argument.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle oracle8i 8.1.5

Exploits

/* source: wwwsecurityfocuscom/bid/1968/info cmctl is the Connection Control Manager, part of the Oracle 8i installation A vulnerability exists that can allow elevation of privileges The problem occurs in the way cmctl handles the user-supplied command line arguments The string representing argv[1] (the first user-supplied commandline ...