AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-1363

CRITICAL · CVSS 9.8 EPSS 9.10%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2004-08-04 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It affects Oracle. It may be remotely exploitable.

CVE
CVE-2004-1363
Severity
CRITICAL
CVSS
9.8
EPSS
9.10%
Oracle

Original NVD Description

Buffer overflow in extproc in Oracle 10g allows remote attackers to execute arbitrary code via environment variables in the library name, which are expanded after the length check is performed.