cbcvebase.

Oracle Oracle9I vulnerabilities

47 known vulnerabilities affecting oracle/oracle9i.

Total CVEs
47
CISA KEV
0
Public exploits
6
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH18MEDIUM19LOW2

Vulnerabilities

Page 3 of 3
CVE-2004-1367P4MEDIUMCVSS 4.4vclient_9.2.0.1vclient_9.2.0.2+34 more2004-08-04
CVE-2004-1367 [MEDIUM] CWE-200 CVE-2004-1367: Oracle 10g Database Server, when installed with a password that contains an exclamation point ("!") Oracle 10g Database Server, when installed with a password that contains an exclamation point ("!") for the (1) DBSNMP or (2) SYSMAN user, generates an error that logs the password in the world-readable postDBCreation.log file, which could allow local users to obtain that password and use it against SYS or SYSTEM accounts, which may have been installed
nvd
CVE-2002-1118P4MEDIUMCVSS 5.0v9.0v9.0.1+5 more2002-10-28
CVE-2002-1118 [MEDIUM] CVE-2002-1118: TNS Listener in Oracle Net Services for Oracle 9i 9.2.x and 9.0.x, and Oracle 8i 8.1.x, allows remot TNS Listener in Oracle Net Services for Oracle 9i 9.2.x and 9.0.x, and Oracle 8i 8.1.x, allows remote attackers to cause a denial of service (hang or crash) via a SERVICE_CURLOAD command.
nvd
CVE-2002-0856P4MEDIUMCVSS 5.0v9.0v9.0.1+3 more2002-09-05
CVE-2002-0856 [MEDIUM] CVE-2002-0856: SQL*NET listener for Oracle Net Oracle9i 9.0.x and 9.2 allows remote attackers to cause a denial of SQL*NET listener for Oracle Net Oracle9i 9.0.x and 9.2 allows remote attackers to cause a denial of service (crash) via certain debug requests that are not properly handled by the debugging feature.
nvd
CVE-2002-0509P4MEDIUMCVSS 5.0v9.0v9.0.12002-08-12
CVE-2002-0509 [MEDIUM] CVE-2002-0509: Transparent Network Substrate (TNS) Listener in Oracle 9i 9.0.1.1 allows remote attackers to cause a Transparent Network Substrate (TNS) Listener in Oracle 9i 9.0.1.1 allows remote attackers to cause a denial of service (CPU consumption) via a single malformed TCP packet to port 1521.
nvd
CVE-2004-2244P4MEDIUMCVSS 5.0venterprise_9.0.1.4venterprise_9.2.0.1+7 more2004-12-31
CVE-2004-2244 [MEDIUM] CVE-2004-2244: The XML parser in Oracle 9i Application Server Release 2 9.0.3.0 and 9.0.3.1, 9.0.2.3 and earlier, a The XML parser in Oracle 9i Application Server Release 2 9.0.3.0 and 9.0.3.1, 9.0.2.3 and earlier, and Release 1 1.0.2.2 and 1.0.2.2.2, and Database Server Release 2 9.2.0.1 and later, allows remote attackers to cause a denial of service (CPU and memory consumption) via a SOAP message containing a crafted DTD.
nvd
CVE-2003-0894P4MEDIUMCVSS 4.6venterprise_9.0.1venterprise_9.2.0.4+9 more2003-11-17
CVE-2003-0894 [MEDIUM] CVE-2003-0894: Buffer overflow in the (1) oracle and (2) oracleO programs in Oracle 9i Database 9.0.x and 9.2.x bef Buffer overflow in the (1) oracle and (2) oracleO programs in Oracle 9i Database 9.0.x and 9.2.x before 9.2.0.4 allows local users to execute arbitrary code via a long command line argument.
nvd
CVE-2006-1705P4LOWCVSS 2.1venterprise_9.2.0venterprise_9.2.0.1+18 more2006-04-11
CVE-2006-1705 [LOW] CVE-2006-1705: Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table to Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table to insert, update, or delete data by creating a crafted view then performing the operations on that view.
nvd
Oracle Oracle9I vulnerabilities | cvebase