Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-2244

EPSS 0.85% · P75
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-2244

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The XML parser in Oracle 9i Application Server Release 2 9.0.3.0 and 9.0.3.1, 9.0.2.3 and earlier, and Release 1 1.0.2.2 and 1.0.2.2.2, and Database Server Release 2 9.2.0.1 and later, allows remote attackers to cause a denial of service (CPU and memory consumption) via a SOAP message containing a crafted DTD.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Oracle 9i应用/数据库服务器SOAP XML DTD拒绝服务攻击漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Oracle Database是一款商业性质大型数据库系统,Oracle 9i应用服务器基于Apache Web服务器,支持SOAP、PL/SQL、XSQL、JSP等环境。 Oracle 9i应用/数据库服务器在处理部分SOAP消息时存在问题,远程攻击者可以利用这个漏洞对服务器进行拒绝服务攻击。 攻击者可以构建XML中包含特殊的数据类型定义(DTDs)SOAP消息,Oracle 9i应用/数据库服务器处理时会产生错误,导致拒绝服务。目前没有详细漏洞细节提供。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-2244

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-2244

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-07-17 · 68 CVEs total

CVE-2004-2257phpMyFAQ图像管理认证绕过漏洞
CVE-2005-2291Oracle Jdeveloper 信息泄露漏洞
CVE-2005-2292Oracle Jdeveloper 信息泄露漏洞
CVE-2005-2290WPS WebPortalSystem wps_shop.cgi 命令执行漏洞
CVE-2005-2279Cisco ONS 15216 OADM telnet 拒绝服务漏洞
CVE-2005-2278MailEnable Professional IMAP4 缓冲区溢出漏洞
CVE-2005-2195Apple Darwin Streaming Server 拒绝服务漏洞
CVE-2005-1914CenterICQ symlink 文件覆盖漏洞
CVE-2005-1689MIT krb krb5_recvauth() 代码执行漏洞
CVE-2005-1175MIT krb5 KDC 堆溢出漏洞
CVE-2005-2280Cisco SecurityAgnet 畸形IP报文 拒绝服务漏洞
CVE-2004-2256phpMyFAQ Lang参数远程目录遍历漏洞
CVE-2004-2255phpMyFAQ Action参数任意文件泄露漏洞
CVE-2004-2254SurgeLDAP Web管理验证绕过漏洞
CVE-2004-2253SurgeLDAP user.cgi远程目录遍历漏洞
CVE-2004-2252Astaro Security Linux信息泄露漏洞
CVE-2004-2251Astaro Security Linux漏洞
CVE-2004-2250RemoteEditor未知的影响和攻击向量且绕过IP地址限制漏洞
CVE-2004-2249SecureEditor限制绕过漏洞
CVE-2004-2248RemoteEditor未知漏洞

Showing top 20 of 68 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2004-2244

No comments yet


Leave a comment