← All CVEs

CVE-2004-0637

medium · 6.5

Oracle Database Server 8.1.7.4 through 9.2.0.4 allows local users to execute commands with additional privileges via the ctxsys.driload package, which is publicly accessible.

6.5
CVSS
17.8%
EPSS (exploit prob.)
97th
EPSS percentile
2004-09-02
Published

AV:N/AC:L/Au:S/C:P/I:P/A:P

Weaknesses

CWE-94

Affected products

VendorProductAffected versions
oracleoracle8ienterprise_8.1.7_.4
oracleoracle8istandard_8.1.7_.4
oracleoracle9ienterprise_9.2.0.4
oracleoracle9ipersonal_9.2.0.4
oracleoracle9istandard_9.0.1.3
oracleoracle9istandard_9.2.0.4

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-0637