vendor:
Oracle Database
by:
Charles Dardaman
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Oracle Database
Affected Version From: 9.2.0.1
Affected Version To: 9.2.0.1
Patch Exists: NO
Related CWE: CVE-2003-0727
CPE: a:oracle:oracle_database:9.2.0.1
Platforms Tested: Windows 2000 SP4
2017
Oracle 9i XDB HTTP PASS Buffer Overflow
This exploit takes advantage of a buffer overflow vulnerability in Oracle 9i XDB HTTP PASS. It allows an attacker to execute arbitrary code on the target system. The exploit is a modified standalone version of the one found on Exploit-DB (ID: 16809).
Mitigation:
Apply the appropriate patch or upgrade to a newer version of Oracle.