7.2
CVSSv2

CVE-2004-1363

Published: 04/08/2004 Updated: 02/02/2024
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in extproc in Oracle 10g allows remote malicious users to execute arbitrary code via environment variables in the library name, which are expanded after the length check is performed.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle database server 8.1.7.4

oracle application server 9.0.2.1

oracle application server

oracle database server 9.0.1.5

oracle application server 9.0.2.0.0

oracle e-business suite 11.5.5

oracle enterprise manager 9.0.1

oracle database server 9.0.4

oracle application server 9.0.4

oracle e-business suite 11.5.4

oracle database server 9.2.0.4

oracle application server 9.0.2.3

oracle e-business suite 11.5.2

oracle application server 9.0.4.1

oracle e-business suite 11.5.7

oracle database server 10.1.0.2

oracle application server 9.0.2.0.1

oracle application server 9.0.4.0

oracle e-business suite 11.5.1

oracle enterprise manager 9

oracle application server 9.0.2.2

oracle application server 9.0.2

oracle e-business suite 11.5.8

oracle application server 9.0.3

oracle application server 9.0.3.1

oracle database server 9.2.0.5

oracle enterprise manager grid control 10.1.0.2

oracle e-business suite 11.5.9

oracle enterprise manager database control 10.1.2

oracle e-business suite 11.5.6

oracle e-business suite 11.5.3

oracle database server 9.0.1.4

oracle collaboration suite -