Back
CVE-2005-0701
Directory traversal vulnerability in Oracle Database Server 8i and 9i allows remote attackers to read or rename arbitrary files via "\\.\\.." (modified dot dot backslash) sequences to UTL_FILE functions such as (1) UTL_FILE.FOPEN or (2) UTL_FILE.frename.
Published: Mar 7, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| oracle | database_server | * |
GitHub Security Advisory GHSA-rmg9-6gq2-f582
Directory traversal vulnerability in Oracle Database Server 8i and 9i allows remote attackers to...
References (6)
- http://lists.grok.org.uk/pipermail/full-disclosure/2005-March/032273.html Exploit, Patch, Vendor Advisory
- http://marc.info/?l=bugtraq&m=111023635928211&w=2
- http://www.argeniss.com/research/ARGENISS-ADV-030501.txt Exploit, Patch, Vendor Advisory
- http://lists.grok.org.uk/pipermail/full-disclosure/2005-March/032273.html Exploit, Patch, Vendor Advisory
- http://marc.info/?l=bugtraq&m=111023635928211&w=2
- http://www.argeniss.com/research/ARGENISS-ADV-030501.txt Exploit, Patch, Vendor Advisory
Risk Scores
CVSS Score
5.0 / 10
EPSS Score
18.15%
Top 3% most likely to be exploited
Threat Score
25.4 / 100
Data Sources
NVD
EPSS
GitHub