Oracle Oracle9I vulnerabilities
47 known vulnerabilities affecting oracle/oracle9i.
Total CVEs
47
CISA KEV
0
Public exploits
6
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH18MEDIUM19LOW2
Vulnerabilities
Page 3 of 3
CVE-2004-1367P4MEDIUMCVSS 4.4vclient_9.2.0.1vclient_9.2.0.2+34 more2004-08-04
CVE-2004-1367 [MEDIUM] CWE-200 CVE-2004-1367: Oracle 10g Database Server, when installed with a password that contains an exclamation point ("!")
Oracle 10g Database Server, when installed with a password that contains an exclamation point ("!") for the (1) DBSNMP or (2) SYSMAN user, generates an error that logs the password in the world-readable postDBCreation.log file, which could allow local users to obtain that password and use it against SYS or SYSTEM accounts, which may have been installed
nvd
CVE-2002-1118P4MEDIUMCVSS 5.0v9.0v9.0.1+5 more2002-10-28
CVE-2002-1118 [MEDIUM] CVE-2002-1118: TNS Listener in Oracle Net Services for Oracle 9i 9.2.x and 9.0.x, and Oracle 8i 8.1.x, allows remot
TNS Listener in Oracle Net Services for Oracle 9i 9.2.x and 9.0.x, and Oracle 8i 8.1.x, allows remote attackers to cause a denial of service (hang or crash) via a SERVICE_CURLOAD command.
nvd
CVE-2002-0856P4MEDIUMCVSS 5.0v9.0v9.0.1+3 more2002-09-05
CVE-2002-0856 [MEDIUM] CVE-2002-0856: SQL*NET listener for Oracle Net Oracle9i 9.0.x and 9.2 allows remote attackers to cause a denial of
SQL*NET listener for Oracle Net Oracle9i 9.0.x and 9.2 allows remote attackers to cause a denial of service (crash) via certain debug requests that are not properly handled by the debugging feature.
nvd
CVE-2002-0509P4MEDIUMCVSS 5.0v9.0v9.0.12002-08-12
CVE-2002-0509 [MEDIUM] CVE-2002-0509: Transparent Network Substrate (TNS) Listener in Oracle 9i 9.0.1.1 allows remote attackers to cause a
Transparent Network Substrate (TNS) Listener in Oracle 9i 9.0.1.1 allows remote attackers to cause a denial of service (CPU consumption) via a single malformed TCP packet to port 1521.
nvd
CVE-2004-2244P4MEDIUMCVSS 5.0venterprise_9.0.1.4venterprise_9.2.0.1+7 more2004-12-31
CVE-2004-2244 [MEDIUM] CVE-2004-2244: The XML parser in Oracle 9i Application Server Release 2 9.0.3.0 and 9.0.3.1, 9.0.2.3 and earlier, a
The XML parser in Oracle 9i Application Server Release 2 9.0.3.0 and 9.0.3.1, 9.0.2.3 and earlier, and Release 1 1.0.2.2 and 1.0.2.2.2, and Database Server Release 2 9.2.0.1 and later, allows remote attackers to cause a denial of service (CPU and memory consumption) via a SOAP message containing a crafted DTD.
nvd
CVE-2003-0894P4MEDIUMCVSS 4.6venterprise_9.0.1venterprise_9.2.0.4+9 more2003-11-17
CVE-2003-0894 [MEDIUM] CVE-2003-0894: Buffer overflow in the (1) oracle and (2) oracleO programs in Oracle 9i Database 9.0.x and 9.2.x bef
Buffer overflow in the (1) oracle and (2) oracleO programs in Oracle 9i Database 9.0.x and 9.2.x before 9.2.0.4 allows local users to execute arbitrary code via a long command line argument.
nvd
CVE-2006-1705P4LOWCVSS 2.1venterprise_9.2.0venterprise_9.2.0.1+18 more2006-04-11
CVE-2006-1705 [LOW] CVE-2006-1705: Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table to
Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table to insert, update, or delete data by creating a crafted view then performing the operations on that view.
nvd
← Previous3 / 3