CVE-1999-1256

CVSS 2.0 Score 4.6 of 10 (medium)

Details

Published Mar 4, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-1256 is a vulnerability affecting Oracle 8.0.3 Enterprise Edition. When creating a new database, the Oracle Database Assistant 1.0 stores the master password in plaintext in the spoolmain.log file, which is accessible to local users. This issue poses a significant security risk, as an attacker can easily obtain the password and gain unauthorized access to the database. This vulnerability is considered critical, as it allows for direct access to sensitive data without proper authentication. It's important for Oracle users to apply the necessary patches or upgrades to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share