{"api_version":"1","generated_at":"2026-07-23T08:00:03+00:00","cve":"CVE-2000-0818","urls":{"html":"https://cve.report/CVE-2000-0818","api":"https://cve.report/api/cve/CVE-2000-0818.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2000-0818","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2000-0818"},"summary":{"title":"CVE-2000-0818","description":"The default installation for the Oracle listener program 7.3.4, 8.0.6, and 8.1.6 allows an attacker to cause logging information to be appended to arbitrary files and execute commands via the SET TRC_FILE or SET LOG_FILE commands.","state":"PUBLISHED","assigner":"mitre","published_at":"2000-12-19 05:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://xforce.iss.net/alerts/advise66.php","name":"http://xforce.iss.net/alerts/advise66.php","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5380","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5380","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://otn.oracle.com/deploy/security/pdf/listener_alert.pdf","name":"http://otn.oracle.com/deploy/security/pdf/listener_alert.pdf","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Technical Resources | Oracle","mime":"application/pdf","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2000-0818","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2000-0818","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2000","cve_id":"818","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"listener","cpe6":"7.3.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2000","cve_id":"818","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"listener","cpe6":"8.0.6","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2000","cve_id":"818","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"listener","cpe6":"8.1.6","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-08T05:28:41.555Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"oracle-listener-connect-statements(5380)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5380"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://otn.oracle.com/deploy/security/pdf/listener_alert.pdf"},{"name":"20001025 Vulnerability in the Oracle Listener Program","tags":["third-party-advisory","x_refsource_ISS","x_transferred"],"url":"http://xforce.iss.net/alerts/advise66.php"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2000-10-25T00:00:00.000Z","descriptions":[{"lang":"en","value":"The default installation for the Oracle listener program 7.3.4, 8.0.6, and 8.1.6 allows an attacker to cause logging information to be appended to arbitrary files and execute commands via the SET TRC_FILE or SET LOG_FILE commands."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2005-11-02T10:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"oracle-listener-connect-statements(5380)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5380"},{"tags":["x_refsource_CONFIRM"],"url":"http://otn.oracle.com/deploy/security/pdf/listener_alert.pdf"},{"name":"20001025 Vulnerability in the Oracle Listener Program","tags":["third-party-advisory","x_refsource_ISS"],"url":"http://xforce.iss.net/alerts/advise66.php"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2000-0818","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The default installation for the Oracle listener program 7.3.4, 8.0.6, and 8.1.6 allows an attacker to cause logging information to be appended to arbitrary files and execute commands via the SET TRC_FILE or SET LOG_FILE commands."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"oracle-listener-connect-statements(5380)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/5380"},{"name":"http://otn.oracle.com/deploy/security/pdf/listener_alert.pdf","refsource":"CONFIRM","url":"http://otn.oracle.com/deploy/security/pdf/listener_alert.pdf"},{"name":"20001025 Vulnerability in the Oracle Listener Program","refsource":"ISS","url":"http://xforce.iss.net/alerts/advise66.php"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2000-0818","datePublished":"2001-05-07T04:00:00.000Z","dateReserved":"2000-10-13T00:00:00.000Z","dateUpdated":"2024-08-08T05:28:41.555Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2000-12-19 05:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:listener:7.3.4:*:*:*:*:*:*:*","matchCriteriaId":"1401CC07-14D9-4558-819A-85D2B8DA867F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:listener:8.0.6:*:*:*:*:*:*:*","matchCriteriaId":"75A28B67-A114-4956-B0FC-C6D22DE8E87F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:listener:8.1.6:*:*:*:*:*:*:*","matchCriteriaId":"465571B9-5189-4CD6-B279-23B340476C5C"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2000","CveId":"818","Ordinal":"1","Title":"CVE-2000-0818","CVE":"CVE-2000-0818","Year":"2000"},"notes":[{"CveYear":"2000","CveId":"818","Ordinal":"1","NoteData":"The default installation for the Oracle listener program 7.3.4, 8.0.6, and 8.1.6 allows an attacker to cause logging information to be appended to arbitrary files and execute commands via the SET TRC_FILE or SET LOG_FILE commands.","Type":"Description","Title":"CVE-2000-0818"},{"CveYear":"2000","CveId":"818","Ordinal":"2","NoteData":"2001-05-07","Type":"Other","Title":"Published"},{"CveYear":"2000","CveId":"818","Ordinal":"3","NoteData":"2005-11-02","Type":"Other","Title":"Modified"}]}}}