cbcvebase.
CVE-2003-0095
published 2003-03-03

CVE-2003-0095: Buffer overflow in ORACLE.EXE for Oracle Database Server 9i, 8i, 8.1.7, and 8.0.6 allows remote attackers to execute arbitrary code via a long username that is…

critical10CVSS 3.1
AVNACLAuNCCICAC
Buffer overflow in ORACLE.EXE for Oracle Database Server 9i, 8i, 8.1.7, and 8.0.6 allows remote attackers to execute arbitrary code via a long username that is provided during login, as exploitable through client applications that perform their own authentication, as demonstrated using LOADPSP.

Affected

10 ranges
VendorProductVersion rangeFixed in
oracledatabase_server
oracledatabase_server
oracledatabase_server
oracleoracle8i
oracleoracle8i
oracleoracle9i
oracleoracle9i
oracleoracle9i
oracleoracle9i
oracleoracle9i