Vulnerability CVE-2004-1707


Published: 2004-07-30   Modified: 2012-02-12

Description:
The (1) dbsnmp and (2) nmo programs in Oracle 8i, Oracle 9i, and Oracle IAS 9.0.2.0.1, on Unix systems, use a default path to find and execute library files while operating at raised privileges, which allows certain Oracle user accounts to gain root privileges via a modified libclntsh.so.9.0.

Vendor: Oracle
Product: Oracle9i 
Version:
standard_9.2.3
standard_9.2.0.4
standard_9.2.0.3
standard_9.2.0.2
standard_9.2.0.1
standard_9.2
standard_9.0.2
standard_9.0.1.5
standard_9.0.1.4
standard_9.0.1.3
standard_9.0.1.2
standard_9.0.1
standard_9.0
personal_9.2.0.4
personal_9.2.0.3
personal_9.2.0.2
personal_9.2.0.1
personal_9.2
personal_9.0.1.5
personal_9.0.1.4
personal_9.0.1
personal_8.1.7
enterprise_9.2.0.4
enterprise_9.2.0.3
enterprise_9.2.0.2
enterprise_9.2.0.1
enterprise_9.2.0
enterprise_9.0.1.5
enterprise_9.0.1.4
enterprise_9.0.1
client_9.2.0.2
client_9.2.0.1
Product: Oracle8i 
Version:
standard_8.1.7_.4
standard_8.1.7_.1
standard_8.1.7_.0.0
standard_8.1.7
standard_8.1.6
standard_8.1.5
standard_8.0.6_.3
standard_8.0.6
enterprise_8.1.7_.1.0
enterprise_8.1.7_.0.0
enterprise_8.1.6_.1.0
enterprise_8.1.6_.0.0
enterprise_8.1.5_.1.0
enterprise_8.1.5_.0.2
enterprise_8.1.5_.0.0
enterprise_8.0.6_.0.1
enterprise_8.0.6_.0.0
enterprise_8.0.5_.0.0
Product: Application server 
Version:
9.0.3.1
9.0.3
9.0.2.3
9.0.2.2
9.0.2.1
9.0.2.0.1
9.0.2.0.0
9.0.2
1.0.2.2.2
1.0.2.2
1.0.2.1s
1.0.2
Product: Application server portal 
Version:
9.0.2.3b
9.0.2.3a
9.0.2.3
3.0.9.8.5
Product: Database server lite 
Version:
5.0.2
5.0.1
5.0

CVSS2 => (AV:L/AC:L/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
7.2/10
10/10
3.9/10
Exploit range
Attack complexity
Authentication
Local
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete

 References:
http://secunia.com/advisories/12205
http://marc.theaimsgroup.com/?l=bugtraq&m=109147677214087&w=2
http://xforce.iss.net/xforce/xfdb/16839
http://www.securityfocus.com/bid/10829

Related CVE
CVE-2017-10010
Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services Applications (subcomponent: FileUploads). Supported versions that are affected are 2.0.0, 2.0.1, 2.2.0 and 12.0.1. Easily exploitable vulnerability allows low...
CVE-2017-10003
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Network Services Library). The supported version that is affected is 10. Difficult to exploit vulnerability allows low privileged attacker with logon to the in...
CVE-2017-10000
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Reporting). Supported versions that are affected are 8.5.1 and 9.0.0. Easily exploitable vulnerability allows low privileged a...
CVE-2019-2879
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.16 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols...
CVE-2019-2878
Vulnerability in the Sun ZFS Storage Appliance Kit (AK) component of Oracle Sun Systems Products Suite (subcomponent: HTTP data path subsystems). The supported version that is affected is 8.8.3. Easily exploitable vulnerability allows unauthenticated...
CVE-2019-2877
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Easily exploitable vulnerability allows low privileged attacker with logo...
CVE-2019-2876
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Easily exploitable vulnerability allows low privileged attacker with logo...
CVE-2019-2875
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Easily exploitable vulnerability allows low privileged attacker with logo...

Copyright 2019, cxsecurity.com

 

Back to Top