CVE-2009-2001Oracle Database Server vulnerability

9 documents5 sources
Severity
6.5MEDIUMNVD
EPSS
0.7%
top 27.96%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 22
Latest updateMay 2

Description

Unspecified vulnerability in the PL/SQL component in Oracle Database 10.2.0.4 and 11.1.0.7 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 8.0 | Impact: 6.4

Affected Packages1 packages

NVDoracle/database_server10.2.0.4, 11.1.0.7+1

🔴Vulnerability Details

2
GHSA
GHSA-9rqx-mvpj-vrhc: Unspecified vulnerability in the PL/SQL component in Oracle Database 102022-05-02
CVEList
CVE-2009-2001: Unspecified vulnerability in the PL/SQL component in Oracle Database 102009-10-22

💥Exploits & PoCs

5
Exploit-DB
MakeSFX.exe 1.44 - Local Stack Buffer Overflow2015-09-30
Exploit-DB
WinVNC Web Server 3.3.3r7 - GET Overflow (Metasploit)2009-12-06
Exploit-DB
BigAnt Server 2.50 - GET Remote Buffer Overflow (SEH)2009-09-15
Exploit-DB
Audio Lib Player - '.m3u' Local Buffer Overflow (SEH)2009-09-09
Exploit-DB
POP Peeper 3.4.0.0 - Date Remote Buffer Overflow2009-03-12
CVE-2009-2001 — Oracle Database Server vulnerability | cvebase