论坛: 菜鸟乐园 标题: 关于oracle漏洞 复制本贴地址    
作者: upxshell [kuangren]    论坛用户   登录

The remote Oracle Database, according to its version number,
is vulnerable to a buffer overflow in the query CREATE DATABASE LINK.

An attacker with a database account may use this flaw to gain the control
on the whole database, or even to obtain a shell on this host.

Solution : See http://otn.oracle.com/deploy/security/pdf/2003alert54.pdf
Risk Factor : High
CVE_ID : CAN-2003-0222
BUGTRAQ_ID : 7453
NESSUS_ID : 11563


此漏洞谁利用成功,可否说明一下心得.

地主 发表时间: 04-07-26 22:38

论坛: 菜鸟乐园

20CN网络安全小组版权所有
Copyright © 2000-2010 20CN Security Group. All Rights Reserved.
论坛程序编写:NetDemon

粤ICP备05087286号