CVE-1999-1068
published 1997-07-23CVE-1999-1068: Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request.
PriorityP415medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.12%
79.7th percentile
Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | http_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Oracle HTTP Server 2.1 PL/SQL Stored Procedures Long HTTP Request denial of service (Nessus ID 10171 / XFDB-1812)
vuldb·2026-04-16·CVSS 5.0
CVE-1999-1068 [MEDIUM] Oracle HTTP Server 2.1 PL/SQL Stored Procedures Long HTTP Request denial of service (Nessus ID 10171 / XFDB-1812)
A vulnerability identified as problematic has been detected in Oracle HTTP Server 2.1. Impacted is an unknown function of the component PL/SQL Stored Procedures Handler. Performing a manipulation as part of Long HTTP Request results in denial of service.
This vulnerability was named CVE-1999-1068. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.
GHSA
GHSA-g6wg-27vg-grv9: Oracle Webserver 2
ghsa_unreviewed·2022-04-30
CVE-1999-1068 [MEDIUM] GHSA-g6wg-27vg-grv9: Oracle Webserver 2
Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
1997-07-23
Published