CVE-2006-0261Oracle Database Server vulnerability

3 documents3 sources
Severity
10.0CRITICALNVD
EPSS
3.7%
top 12.04%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 18
Latest updateMay 1

Description

Multiple unspecified vulnerabilities in Oracle Database server 8.1.7.4, 9.0.1.5, 9.2.0.7, and 10.1.0.5 have unspecified impact and attack vectors, as identified by Oracle Vuln# (1) DB07 in the Dictionary component and (2) DB14 in the Oracle Label Security component. NOTE: Oracle has not disputed reliable researcher claims that DB07 involves plaintext storage of the TDE wallet password in a trace file by event 10053.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

NVDoracle/database_server4 versions+3

🔴Vulnerability Details

2
GHSA
GHSA-9f47-75v5-f4cr: Multiple unspecified vulnerabilities in Oracle Database server 82022-05-01
CVEList
CVE-2006-0261: Multiple unspecified vulnerabilities in Oracle Database server 82006-01-18
CVE-2006-0261 — Oracle Database Server vulnerability | cvebase