Vulnerabilities > Oracle > Database Server > High

DATE CVE VULNERABILITY TITLE RISK
2013-07-17 CVE-2013-3771 Local Security vulnerability in Oracle Database Server
Unspecified vulnerability in the Oracle executable component in Oracle Database Server 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows local users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-3760.
local
low complexity
oracle
7.2
2013-07-17 CVE-2013-3760 Local Security vulnerability in Oracle Database Server
Unspecified vulnerability in the Oracle executable component in Oracle Database Server 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows local users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-3771.
local
low complexity
oracle
7.2
2012-05-08 CVE-2012-1675 Permissions, Privileges, and Access Controls vulnerability in Oracle Database Server
The TNS Listener, as used in Oracle Database 11g 11.1.0.7, 11.2.0.2, and 11.2.0.3, and 10g 10.2.0.3, 10.2.0.4, and 10.2.0.5, as used in Oracle Fusion Middleware, Enterprise Manager, E-Business Suite, and possibly other products, allows remote attackers to execute arbitrary database commands by performing a remote registration of a database (1) instance or (2) service name that already exists, then conducting a man-in-the-middle (MITM) attack to hijack database connections, aka "TNS Poison."
network
low complexity
oracle CWE-264
7.5
2012-05-03 CVE-2012-0519 Remote Core RDBMS vulnerability in Oracle Database Server 11.2.0.2
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.2.0.2, when running on Windows, allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
network
high complexity
oracle microsoft
7.1
2011-10-18 CVE-2011-2301 Unspecified vulnerability in Oracle Database Server
Unspecified vulnerability in the Oracle Text component in Oracle Database Server 10.1.0.5, 10.2.0.3, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect confidentiality, integrity, and availability, related to CTXSYS.DRVDISP.
network
oracle
8.5
2011-07-20 CVE-2011-2253 Remote Core RDBMS vulnerability in Oracle Database Server
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.1, and 11.2.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability, related to SYSDBA.
network
high complexity
oracle
7.1
2011-07-20 CVE-2011-2239 Remote Core RDBMS vulnerability in Oracle Database Server RDBMS
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.1, and 11.2.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability, related to XMLSEQ_IMP_T.
network
high complexity
oracle
7.1
2011-01-19 CVE-2010-3600 Remote Code Execution vulnerability in Oracle Database and Enterprise Manager Grid Control
Unspecified vulnerability in the Client System Analyzer component in Oracle Database Server 11.1.0.7 and 11.2.0.1 and Enterprise Manager Grid Control 10.2.0.5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
oracle
7.5
2010-10-14 CVE-2010-2390 Remote EM Console vulnerability in Oracle products
Unspecified vulnerability in the Database Control component in EM Console in Oracle Database Server 10.1.0.5 and 10.2.0.3, Oracle Fusion Middleware 10.1.2.3 and 10.1.4.3, and Enterprise Manager Grid Control allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
network
low complexity
oracle
7.5
2010-07-13 CVE-2010-0911 Remote Listener vulnerability in Oracle
Unspecified vulnerability in the Listener component in Oracle Database Server 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, 11.1.0.7, and 11.2.0.1 allows remote attackers to affect availability via unknown vectors.
network
low complexity
oracle
7.8