Vulnerability CVE-2009-0972


Published: 2009-04-15   Modified: 2012-02-13

Description:
Unspecified vulnerability in the Workspace Manager component in Oracle Database 11.1.0.6, 11.1.0.7, 10.2.0.3, 10.2.0.4, 10.1.0.5, 9.2.0.8, and 9.2.0.8DV allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.

Type:

CWE-noinfo

CVSS2 => (AV:N/AC:L/Au:S/C:P/I:P/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
6.5/10
6.4/10
8/10
Exploit range
Attack complexity
Authentication
Remote
Low
Single time
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
Partial
Affected software
Oracle -> Database 10g 
Oracle -> Database 11g 
Oracle -> Database 9i 
Oracle -> Database server 

 References:
http://www.us-cert.gov/cas/techalerts/TA09-105A.html
http://www.securitytracker.com/id?1022052
http://www.securityfocus.com/bid/34461
http://www.oracle.com/technetwork/topics/security/cpuapr2009-099563.html
http://secunia.com/advisories/34693

Copyright 2024, cxsecurity.com

 

Back to Top