Oracle XDB是Oracle 9i介绍的Oracle XML数据库,Oracle XDB数据可以通过基于HTTP服务的8080 TCP端口或者基于FTP服务的2100端口访问。 XDB的HTTP和FTP服务存在多个缓冲区溢出问题,远程攻击者可以利用这些漏洞对服务进行拒绝服务攻击,精心提交字符串数据可能以服务进程权限在系统上执行任意指令。 几个漏洞描述如下: -XDB HTTP超长用户名或密码问题: 要使用基于WEB的XDB服务,用户必须进行验证,这通过使用Base64编码传递验证信息给服务器,但是攻
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2003-0658 | Caldera 安全漏洞 | |
| CVE-2003-0686 | Pam_SMB远程缓冲区溢出漏洞 | |
| CVE-2003-0688 | Sendmail dnsmap远程拒绝服务攻击漏洞 | |
| CVE-2003-0689 | Glibc Getgrouplist函数本地缓冲区溢出漏洞 | |
| CVE-2003-0702 | ISS RealSecure Server Sensor SSL远程拒绝服务攻击漏洞 | |
| CVE-2003-0707 | LinuxNode (node)缓冲区溢出漏洞 | |
| CVE-2003-0708 | LinuxNode (node)格式字符串漏洞 | |
| CVE-2003-0709 | whois client缓冲区溢出漏洞 | |
| CVE-2003-0723 | gkrellm gkrellmd缓冲区溢出漏洞 | |
| CVE-2003-0724 | HP Tru64 SSH未明RSA密钥验证绕过漏洞 | |
| CVE-2003-0725 | Real Networks Helix Universal Server远程缓冲区溢出漏洞 | |
| CVE-2003-0726 | RealOne Player SMIL远程文件脚本执行漏洞 | |
| CVE-2003-0728 | Horde漏洞 | |
| CVE-2003-0729 | Tellurian TftpdNT超长文件名缓冲区溢出漏洞 | |
| CVE-2003-0730 | XFree86多个未明整数溢出漏洞 |
No comments yet