Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-5504

EPSS 4.13% · P89
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-5504

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+ and 10.1.0.5 unknown impact and remote attack vectors, related to (1) Import (DB01) and (2) Advanced Queuing (DB25). NOTE: as of 20071108, Oracle has not disputed reliable researcher claims that DB25 is for a buffer overflow in the DBLINK_INFO procedure in the DBMS_AQADM_SYS package.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Oracle数据库服务器DBMS_AQADM_SYS.DBLINK_INFO软件包远程溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Oracle是一款大型的商用数据库系统。 Oracle捆绑的SYS.DBMS_AQADM_SYS软件包实现上存在缓冲区溢出漏洞,远程攻击者可能利用此漏洞控制服务器。 Oracle数据库服务器捆绑的SYS.DBMS_AQADM_SYS软件包用于结合SYS.DBMS_AQADM软件包内部使用以实现Oracle流高级队列(AQ)配置和管理,该软件包的DBLINK_INFO过程中存在缓冲区溢出漏洞。如果Oracle数据库用户对SYS.DBMS_AQADM_SYS软件包拥有EXECUTE权限的话,就可以解发这个溢出
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-5504

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-5504

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-10-17 · 52 CVEs total

CVE-2003-1358HP-UX rs.F3000未明未授权访问漏洞
CVE-2003-1373PHPBB Auth.PHP文件泄漏漏洞
CVE-2003-1372myPHPNuke Links.php跨站脚本漏洞
CVE-2003-1367Majordomo默认配置远程列表订阅者泄露漏洞
CVE-2003-1370Nuked-Klan Guestbook HTML注入漏洞
CVE-2003-1369ByteCatcher FTP Client超长服务器标志缓冲区溢出漏洞
CVE-2003-1368Electrasoft 32Bit FTP Client超长服务器标语缓冲区溢出漏洞
CVE-2003-1371Nuked-Klan远程信息泄露漏洞
CVE-2003-1360HP-UX landiag/lanadmin本地缓冲区溢出漏洞
CVE-2003-1359HP-UX stmkfont未明本地缓冲区溢出漏洞
CVE-2003-1361Veritas Bare Metal Restore远程代码执行漏洞
CVE-2007-5490Okul Otomasyon Portal 'Default.ASP' SQL注入漏洞
CVE-2007-5489Artmedic CMS 'Index.PHP' 本地文件包含漏洞
CVE-2007-5492SiteBar 翻译模块'translator.php' 静态代码注入漏洞
CVE-2007-5491SiteBar 翻译模块(translator.php)目录遍历漏洞
CVE-2007-5534Oracle PeopleSoft Enterprise和JD Edwards EnterpriseOne HCM组件未明远程攻击漏洞
CVE-2007-5533Oracle PeopleSoft Enterprise和JD Edwards EnterpriseOne People Tools组件安全漏洞
CVE-2007-5532Oracle PeopleSoft Enterprise和JD Edwards EnterpriseOne People Tools组件安全漏洞
CVE-2007-5531Oracle Help for Web 安全漏洞
CVE-2007-5530Oracle Database Enterprise Manager的Database Control组件未明影响和远程攻击漏洞

Showing top 20 of 52 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2007-5504

No comments yet


Leave a comment