Vulnerability Description
dbsnmp in Oracle Intelligent Agent allows local users to gain privileges by setting the ORACLE_HOME environmental variable, which dbsnmp uses to find the nmiconf.tcl script.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Database Server | 7.3.3 |
| Oracle | Oracle8I | 8.0.3 |
References
FAQ
What is CVE-1999-0888?
CVE-1999-0888 is a vulnerability with a CVSS score of 4.6 (MEDIUM). dbsnmp in Oracle Intelligent Agent allows local users to gain privileges by setting the ORACLE_HOME environmental variable, which dbsnmp uses to find the nmiconf.tcl script.
How severe is CVE-1999-0888?
CVE-1999-0888 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-0888?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Database Server, Oracle Oracle8I.