CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-1999-1125

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1200%
EPSS Percentile40.84th
Published1997年9月19日
Last Modified2026年4月16日

Vulnerability Description

Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.

Affected Platforms (CPE)

📦
Oracle

Http Server

<= 2.1
📦
Oracle

Http Server

= 1.0

References & Advisories

相關漏洞威脅