CVE-2001-0943

dbsnmp in Oracle 8.0.5 and 8.1.5, under certain conditions, trusts the PATH environment variable to find and execute the (1) chown or (2) chgrp commands, which allows local users to execute arbitrary code by modifying the PATH to point to Trojan Horse programs.

Scoring

CVSS base score
0.04
EPSS probability
0.80%
Published
2002-02-02
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs