Vulnerabilities > CVE-2010-0906 - Remote vulnerability in Oracle Secure Backup 10.3.0.1

047910
CVSS 9.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
SINGLE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
oracle
critical

Summary

Unspecified vulnerability in Oracle Secure Backup 10.3.0.1 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors. Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujul2010.html 'CVSS Score is 9.0 for Windows based installation. For Linux, Unix and other platforms, the CVSS Base Score is 6.5, and the impacts for Confidentiality, Integrity and Availability are Partial.'

Vulnerable Configurations

Part Description Count
Application
Oracle
1

Saint

  • bid41597
    descriptionOracle Secure Backup Administration property_box.php objectname command injection
    osvdb66340
    titleoracle_secure_backup_objectname
    typeremote
  • bid41597
    descriptionOracle Secure Backup Administration preauth variable command injection
    osvdb67128
    titleoracle_secure_backup_preauth
    typeremote
  • bid41597
    descriptionOracle Secure Backup Administration selector parameter command injection
    osvdb67128
    titleoracle_secure_backup_selector
    typeremote