CVE-2002-0560

3 documents3 sources
Severity
5.0MEDIUM
EPSS
5.6%
top 9.65%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 3
Latest updateApr 30

Description

PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allows remote attackers to obtain sensitive information via the OWA_UTIL stored procedures (1) OWA_UTIL.signature, (2) OWA_UTIL.listprint, or (3) OWA_UTIL.show_query_columns.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages4 packages

NVDoracle/application4 versions+3
NVDoracle/oracle8i8.1.7, 8.1.7.1+1
NVDoracle/oracle9i9.0, 9.0.1+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vgpg-jv9c-rhh6: PL/SQL module 32022-04-30
CVEList
CVE-2002-0560: PL/SQL module 32002-06-11
CVE-2002-0560 (MEDIUM CVSS 5) | PL/SQL module 3.0.9.8.2 in Oracle 9 | cvebase.io