Vulnerabilities > Oracle > Database Server

DATE CVE VULNERABILITY TITLE RISK
2006-07-21 CVE-2006-3702 Multiple vulnerability in Oracle July 2006 Security Update
Multiple unspecified vulnerabilities in Oracle Database 8.1.7.4, 9.0.1.5, 9.2.0.7, 10.1.0.5, and 10.2.0.2 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB06 in Export; (2) DB08, (3) DB09, (4) DB10, (5) DB11, (6) DB12, (7) DB13, (8) DB14, and (9) DBC01 for OCI; (10) DB16 for Query Rewrite/Summary Mgmt; (11) DB17, (12) DB18, (13) DB19, (14) DBC02, (15) DBC03, and (16) DBC04 for RPC; and (17) DB20 for Semantic Analysis.
network
low complexity
oracle
critical
10.0
2006-07-21 CVE-2006-3701 Multiple vulnerability in Oracle Database Server 8.1.7.4/9.0.1.5/9.2.0.6
Unspecified vulnerability in the Dictionary component in Oracle Database 8.1.7.4, 9.0.1.5, and 9.2.0.6 has unknown impact and attack vectors, aka Oracle Vuln# DB05.
network
low complexity
oracle
critical
9.0
2006-07-21 CVE-2006-3700 Multiple vulnerability in Oracle Database Server 10.1.0.4/9.2.0.6
Multiple unspecified vulnerabilities in Oracle Database 9.2.0.6 and 10.1.0.4 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB04 for Web Distributed Authoring and Versioning (DAV) and (2) DB23 for XMLDB.
network
low complexity
oracle
critical
10.0
2006-07-21 CVE-2006-3699 Multiple vulnerability in Oracle July 2006 Security Update
Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.0.1.5 and 9.2.0.6 has unknown impact and attack vectors, aka Oracle Vuln# DB02.
network
low complexity
oracle
critical
9.0
2006-05-22 CVE-2006-2505 SQL Injection vulnerability in Oracle Database Server Release2
Oracle Database Server 10g Release 2 allows local users to execute arbitrary SQL queries via a reference to a malicious package in the TYPE_NAME argument in the (1) GET_DOMAIN_INDEX_TABLES or (2) GET_V2_DOMAIN_INDEX_TABLES function in the DBMS_EXPORT_EXTENSION package.
local
low complexity
oracle
3.6
2006-04-27 CVE-2006-2081 SQL Injection vulnerability in Oracle 10g DBMS_EXPORT_EXTENSION
Oracle Database Server 10g Release 2 allows local users to execute arbitrary SQL queries via the GET_DOMAIN_INDEX_METADATA function in the DBMS_EXPORT_EXTENSION package.
local
low complexity
oracle
4.6
2006-04-20 CVE-2006-1884 Multiple vulnerability in Oracle April 2006 Security Update
Unspecified vulnerability in the Oracle Thesaurus Management System component in Oracle E-Business Suite and OPA 4.5.2 Applications has unknown impact and attack vectors, aka Vuln# OPA01.
network
low complexity
jdedwards oneworld oracle
critical
10.0
2006-04-20 CVE-2006-1877 Multiple vulnerability in Oracle Database Server 8.1.7.4/9.0.1.5/9.2.0.7
Unspecified vulnerability in Oracle Database Server 8.1.7.4, 9.0.1.5, and 9.2.0.7 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB13.
local
low complexity
oracle
7.2
2006-04-20 CVE-2006-1876 Multiple vulnerability in Oracle Database Server 10.1.0.4/9.2.0.7
Unspecified vulnerability in Oracle Database Server 9.2.0.7 and 10.1.0.4 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB12.
network
low complexity
oracle
critical
9.0
2006-04-20 CVE-2006-1875 Multiple vulnerability in Oracle Database Server 10.1.0.5/9.0.1.5/9.2.0.7
Unspecified vulnerability in Oracle Database Server 9.0.1.5, 9.2.0.7, and 10.1.0.5 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB11.
network
low complexity
oracle
critical
10.0