CVE-2019-25653

Publication date

2026-03-30 11:02:27

Family

VulnCheck

State

PUBLISHED

Description

Navicat for Oracle 12.1.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the password field. Attackers can paste a buffer of 550 repeated characters into the password parameter during Oracle connection configuration to trigger an application crash.