- EPSS 20.15%
- Veröffentlicht 18.04.2007 18:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Advanced Replication component in Oracle Database 9.0.1.5+, 9.2.0.7, and 10.1.0.5 has unknown impact and attack vectors, aka DB10. NOTE: as of 20070424, Oracle has not disputed claims that these are buffer overflows ...
CVE-2007-2117
- EPSS 0.45%
- Veröffentlicht 18.04.2007 18:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Oracle Text component in Oracle Database 9.0.1.5+ and 9.2.0.5 has unknown impact and attack vectors, aka DB12. NOTE: as of 20070424, Oracle has not disputed reliable claims that this involves a buffer overflow in the...
CVE-2007-2118
- EPSS 5.12%
- Veröffentlicht 18.04.2007 18:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Upgrade/Downgrade component of Oracle Database 9.0.1.5 and 9.2.0.7 has unknown impact and attack vectors, aka DB13. NOTE: as of 20070424, Oracle has not disputed reliable claims that this is a buffer overflow involvi...
CVE-2007-2119
- EPSS 4.66%
- Veröffentlicht 18.04.2007 18:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Cross-site scripting (XSS) vulnerability in boundary_rules.jsp in the Administration Front End for Oracle Enterprise (Ultra) Search, as used in Database Server 9.2.0.8, 10.1.0.5, and 10.2.0.2, and in Application Server 9.0.4.3, 10.1.2.0.2, and 10.1.2...
- EPSS 2.54%
- Veröffentlicht 18.04.2007 18:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Workflow Cartridge, as used in Oracle Database Server 9.2.0.1, 10.1.0.2, and 10.2.0.1; Application Server 9.0.4.3 and 10.1.2.0.2; Collaboration Suite 10.1.2; and E-Business Suite; has unknown impact and remote authenticat...
CVE-2007-1442
- EPSS 0.76%
- Veröffentlicht 14.03.2007 00:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Oracle Database 10g uses a NULL pDacl parameter when calling the SetSecurityDescriptorDacl function to create discretionary access control lists (DACLs), which allows local users to gain privileges.
- EPSS 4.53%
- Veröffentlicht 07.03.2007 20:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Absolute path traversal vulnerability in Oracle Database Server, when utl_file_dir is set to a wildcard value or "CREATE ANY DIRECTORY to PUBLIC" privileges exist, allows remote authenticated users to read and modify arbitrary files via full filepath...
- EPSS 2.24%
- Veröffentlicht 02.03.2007 21:18:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Oracle 10g R2 and possibly other versions allows remote attackers to trigger internal errors, and possibly have other impacts, via an "alter session set events" command with invalid arguments. NOTE: this issue was originally disputed by a third part...
CVE-2007-0268
- EPSS 4.99%
- Veröffentlicht 17.01.2007 02:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5, 9.2.0.7, and 10.1.0.5 have unknown impact and attack vectors related to (1) the Advanced Queuing component and sys.dbms_aqsys.dbms_aq privileges (DB01), (2) Advanced Replication and sys...
CVE-2007-0269
- EPSS 0.59%
- Veröffentlicht 17.01.2007 02:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Oracle Database 9.2.0.8, 10.1.0.5, and 10.2.0.3 has unknown impact and attack vectors related to the Change Data Capture and sys.dbms_cdc_subscribe privileges, aka DB02.