8.5
CVSSv2

CVE-2004-0638

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 8.5 | Impact Score: 10 | Exploitability Score: 6.8
VMScore: 756
Vector: AV:N/AC:M/Au:S/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the KSDWRTB function in the dbms_system package (dbms_system.ksdwrt) for Oracle 9i Database Server Release 2 9.2.0.3 and 9.2.0.4, 9i Release 1 9.0.1.4 and 9.0.1.5, and 8i Release 1 8.1.7.4, allows remote authorized users to execute arbitrary code via a long second argument.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle oracle8i standard 8.1.7.4

oracle oracle9i standard 9.0.1.4

oracle oracle9i personal 9.0.1.5

oracle oracle9i standard 9.2.0.3

oracle oracle9i enterprise 9.2.0.4

oracle oracle9i enterprise 9.0.1.5

oracle oracle9i standard 9.2.0.4

oracle oracle9i personal 9.2.0.4

oracle oracle9i enterprise 9.2.0.3

oracle oracle9i personal 9.0.1.4

oracle oracle9i personal 9.2.0.3

oracle oracle9i standard 9.0.1.5

oracle oracle8i enterprise 8.1.7.4

oracle oracle9i enterprise 9.0.1.4