Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v25x-3wqw-87r9

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Buffer overflow in extproc in Oracle 10g allows remote attackers to execute arbitrary code via environment variables in the library name, which are expanded after the length check is performed.

Buffer overflow in extproc in Oracle 10g allows remote attackers to execute arbitrary code via environment variables in the library name, which are expanded after the length check is performed.

EPSS

Процентиль: 96%
0.27664
Средний

9.8 Critical

CVSS3

Дефекты

CWE-119
CWE-131

Связанные уязвимости

CVSS3: 9.8
nvd
около 21 года назад

Buffer overflow in extproc in Oracle 10g allows remote attackers to execute arbitrary code via environment variables in the library name, which are expanded after the length check is performed.

EPSS

Процентиль: 96%
0.27664
Средний

9.8 Critical

CVSS3

Дефекты

CWE-119
CWE-131