cbcvebase.
CVE-2004-1368
published 2004-08-04

CVE-2004-1368: ISQL*Plus in Oracle 10g Application Server allows remote attackers to execute arbitrary files via an absolute pathname in the file parameter to the load.uix…

PriorityP434high7.8CVSS 2.0
AVNACLAuNCCINAN
EPSS
5.56%
92.0th percentile
ISQL*Plus in Oracle 10g Application Server allows remote attackers to execute arbitrary files via an absolute pathname in the file parameter to the load.uix script.

Affected

86 ranges· showing 25
VendorProductVersion rangeFixed in
oracleapplication_server
oracleapplication_server
oracleapplication_server
oracleapplication_server
oracleapplication_server
oracleapplication_server
oracleapplication_server
oracleapplication_server
oracleapplication_server
oracleapplication_server
oracleapplication_server
oraclecollaboration_suite
oraclee-business_suite
oraclee-business_suite
oraclee-business_suite
oraclee-business_suite
oraclee-business_suite
oraclee-business_suite
oraclee-business_suite
oraclee-business_suite
oraclee-business_suite
oracleenterprise_manager
oracleenterprise_manager
oracleenterprise_manager_database_control
oracleenterprise_manager_grid_control
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.