Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2002-0857

EPSS 1.54% · P81
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2002-0857

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Format string vulnerabilities in Oracle Listener Control utility (lsnrctl) for Oracle 9.2 and 9.0, 8.1, and 7.3.4, allow remote attackers to execute arbitrary code on the Oracle DBA system by placing format strings into certain entries in the listener.ora configuration file.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Oracle Listener Control 工具格式串漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Oracle是Oracle公司开发的一套流行的商业数据库系统。Oracle提供了一个工具名为:Listener Control utility (lsnrctl) ,Oracle数据库管理员可以使用这个工具远程控制listener。 Lsnrctl工具没有正确处理Listener返回的数据,存在一个格式串漏洞。 缺省情况下,Oracle Listener未经保护,允许未授权的访问。例如Listener的配置文件就可以被远程修改而无需用户提供口令。通过编辑listener.ora文件中的某些配置选项,例如设
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2002-0857

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2002-0857

登录查看更多情报信息。

Same Patch Batch · n/a · 2002-08-20 · 8 CVEs total

CVE-2002-0093Tru64 IPCS本地缓冲区溢出漏洞
CVE-2002-0654Apache 安全漏洞
CVE-2002-0721Microsoft SQL Server扩展存储过程权限提升漏洞(MS02-043)
CVE-2002-0725Microsoft Windows NTFS文件硬连接操作审核不正确漏洞
CVE-2002-0858Oracle catalog创建默认用户/口令漏洞
CVE-2002-0870Cisco Content Service Switch认证绕过漏洞
CVE-2002-0874RedHat Interchange远程泄漏任意文件漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2002-0857

No comments yet


Leave a comment