HIGH🇵🇱 Wersja polska

CVE-2001-0974

CVSS 7.5v2.0pub. 2001-07-17upd. 2026-04-16

Format string vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.

CVSS Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
  • Oracle Internet Directory

    APP
    Oracle
    2.1.13.0.1
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCE
CWE
References

Related vulnerabilities

CVE-2026-61248CRITICAL9.9same product

Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server...

CVE-2026-61258CRITICAL9.8same product

Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server...

CVE-2026-61241CRITICAL10.0same product

Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server...

CVE-2019-0227HIGH7.5same product

A Server Side Request Forgery (SSRF) vulnerability affected the Apache Axis 1.4 distribution that was last rel...

CVE-2018-2601HIGH8.0same product

Vulnerability in the Oracle Internet Directory component of Oracle Fusion Middleware (subcomponent: Oracle Dir...