The default installation for the Oracle listener program 7.3.4, 8.0.6, and 8.1.6 allows an attacker to cause logging information to be appended to arbitrary files and execute commands via the SET TRC_FILE or SET LOG_FILE commands.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2001-05-07T04:00:00
Updated: 2024-08-08T05:28:41.555Z
Reserved: 2000-10-13T00:00:00
Link: CVE-2000-0818
Vulnrichment
No data.
NVD
Status : Modified
Published: 2000-12-19T05:00:00.000
Modified: 2017-10-10T01:29:18.967
Link: CVE-2000-0818
Redhat
No data.