Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2000-0987

5 documents4 sources
Severity
4.6MEDIUM
EPSS
0.4%
top 40.66%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedDec 19
Latest updateApr 30

Description

Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.

CVSS vector

AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-f5m7-2587-87mp: Buffer overflow in oidldapd in Oracle 82022-04-30
CVEList
CVE-2000-0987: Buffer overflow in oidldapd in Oracle 82000-11-29

💥Exploits & PoCs

2
Exploit-DB
Oracle (oidldapd connect) - Local Command Line Overflow2000-11-16
Exploit-DB
Oracle Internet Directory 2.0.6 - oidldap2000-10-18
CVE-2000-0987 (MEDIUM CVSS 4.6) | Buffer overflow in oidldapd in Orac | cvebase.io