Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the KSDWRTB function in the dbms_system package (dbms_system.ksdwrt) for Oracle 9i Database Server Release 2 9.2.0.3 and 9.2.0.4, 9i Release 1 9.0.1.4 and 9.0.1.5, and 8i Release 1 8.1.7.4, allows remote authorized users to execute arbitrary code via a long second argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Oracle 8i/9i DBMS_SYSTEM.KSDWRT()缓冲区溢出漏洞
Vulnerability Description
Oracle Database是一款商业性质大型数据库系统。 Oracle Database的KSDWRT()函数对参数检查缺少充分编辑缓冲区检查,远程攻击者可以利用这个漏洞进行缓冲区溢出攻击,可能以进程权限执行任意指令。 拥有执行dbms_system包权限的Oracle用户可以通过使用特殊构建的参数给KSDWRT()处理,可触发缓冲区溢出,精心构建提交数据可能以进程权限执行任意指令。 默认情况下DBA用户拥有对此包的访问权限。
CVSS Information
N/A
Vulnerability Type
N/A