Vulnerabilities
Vulnerable Software
Oracle:  >> Http Server  >> 2.1  Security Vulnerabilities
Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.
CVSS Score
10.0
EPSS Score
0.009
Published
1997-09-19
Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request.
CVSS Score
5.0
EPSS Score
0.004
Published
1997-07-23


Contact Us

Shodan ® - All rights reserved