Vulnerabilities > Oracle > Database Server

DATE CVE VULNERABILITY TITLE RISK
2010-07-13 CVE-2010-0900 Remote vulnerability in Oracle Network Layer
Unspecified vulnerability in the Network Layer component in Oracle Database Server 9.2.0.8, 10.1.0.5, 10.2.0.4, 11.1.0.7, and 11.2.0.1, when running on Windows, allows remote attackers to affect availability via unknown vectors.
network
high complexity
oracle microsoft
2.6
2010-07-13 CVE-2010-0892 Remote vulnerability in Oracle Database Server 3.2.0.00.27
Unspecified vulnerability in the Application Express component in Oracle Database Server 3.2.0.00.27 allows remote attackers to affect integrity via unknown vectors.
network
oracle
4.3
2010-05-19 CVE-2010-1321 Null Pointer Dereference vulnerability in multiple products
The kg_accept_krb5 function in krb5/accept_sec_context.c in the GSS-API library in MIT Kerberos 5 (aka krb5) through 1.7.1 and 1.8 before 1.8.2, as used in kadmind and other applications, does not properly check for invalid GSS-API tokens, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an AP-REQ message in which the authenticator's checksum field is missing.
6.8
2010-04-13 CVE-2010-0870 Unspecified vulnerability in Oracle Database Server 9.2.0.8/9.2.0.8Dv
Unspecified vulnerability in the Change Data Capture component in Oracle Database 9.2.0.8 and 9.2.0.8DV allows remote authenticated users to affect confidentiality and integrity, related to SYS.DBMS_CDC_PUBLISH.
network
high complexity
oracle
3.6
2010-04-13 CVE-2010-0867 Remote JavaVM vulnerability in Oracle Database Server 10.2.0.4/11.1.0.7/11.2.0.1.0
Unspecified vulnerability in the JavaVM component in Oracle Database 10.2.0.4, 11.1.0.7, and 11.2.0.1.0 allows remote authenticated users to affect integrity via unknown vectors.
network
low complexity
oracle
4.0
2010-04-13 CVE-2010-0866 Remote JavaVM vulnerability in Oracle Database
Unspecified vulnerability in the JavaVM component in Oracle Database 11.1.0.7 and 11.2.0.1 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
oracle
6.5
2010-04-13 CVE-2010-0860 Remote Core RDBMS vulnerability in Oracle Database
Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to the Create User privilege.
network
high complexity
oracle
7.1
2010-04-13 CVE-2010-0854 Remote Audit vulnerability in Oracle Database
Unspecified vulnerability in the Audit component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect integrity, related to "SELECT, INSERT or DELETE on tables subject to auditing."
network
high complexity
oracle
2.1
2010-04-13 CVE-2010-0853 Oracle Internet Directory Remote vulnerability in Oracle Fusion Middleware
Unspecified vulnerability in the Oracle Internet Directory component in Oracle Database 9.2.0.8, 9.2.0.8, and DV; and Oracle Fusion Middleware 10.1.2.3 and 10.1.4.0.1; allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
oracle
7.5
2010-04-13 CVE-2010-0852 Remote XML DB vulnerability in Oracle Database
Unspecified vulnerability in the XML DB component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
network
low complexity
oracle
5.5