Skip to main content

Vendor archive

oracle CVEs

Beta · best-effort

11,134 CVEs tagged to vendor oracle1,237 Critical, 2,914 High, 5,971 Medium, 1,010 Low, 2 Unrated.

CVE-2000-0576

Published Jul 5, 2000

Oracle Web Listener for AIX versions 4.0.7.0.0 and 4.0.8.1.0 allows remote attackers to cause a denial of service via a malformed URL.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0169

Published Mar 15, 2000

Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0206

Published Mar 5, 2000

The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local users to gain privileges.

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0148

Published Feb 8, 2000

MySQL 3.22 allows remote attackers to bypass password authentication and access a database via a short check string.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0045

Published Jan 11, 2000

MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege.

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-1547

Published Nov 25, 1999

Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with its HTTP-encoded (hex) equivalent.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-0888

Published Aug 16, 1999

dbsnmp in Oracle Intelligent Agent allows local users to gain privileges by setting the ORACLE_HOME environmental variable, which dbsnmp uses to find the nmiconf.tcl script.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-0711

Published Apr 29, 1999

The oratclsh interpreter in Oracle 8.x Intelligent Agent for Unix allows local users to execute Tcl commands as root.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-1256

Published Mar 4, 1999

Oracle Database Assistant 1.0 in Oracle 8.0.3 Enterprise Edition stores the database master password in plaintext in the spoolmain.log file when a new database is created, which a…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 11,126-11,134 of 11,134 CVEsPage 446 of 446