Vulnerabilities (CVE)

Filtered by vendor Navicat Subscribe
Filtered by product Navicat For Oracle
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-25653 1 Navicat 1 Navicat For Oracle 2026-06-17 N/A 6.2 MEDIUM
Navicat for Oracle 12.1.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the password field. Attackers can paste a buffer of 550 repeated characters into the password parameter during Oracle connection configuration to trigger an application crash.