AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-0638

HIGH · CVSS 8.5 EPSS 6.63%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2004-12-31 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2004-0638
Severity
HIGH
CVSS
8.5
EPSS
6.63%
Oracle

Original NVD Description

Buffer overflow in the KSDWRTB function in the dbms_system package (dbms_system.ksdwrt) for Oracle 9i Database Server Release 2 9.2.0.3 and 9.2.0.4, 9i Release 1 9.0.1.4 and 9.0.1.5, and 8i Release 1 8.1.7.4, allows remote authorized users to execute arbitrary code via a long second argument.