CVE-2006-7067
published 2007-03-02CVE-2006-7067: Oracle 10g R2 and possibly other versions allows remote attackers to trigger internal errors, and possibly have other impacts, via an "alter session set…
PriorityP423medium6CVSS 2.0
AVLACHAuSCCICAC
EPSS
6.83%
93.3th percentile
Oracle 10g R2 and possibly other versions allows remote attackers to trigger internal errors, and possibly have other impacts, via an "alter session set events" command with invalid arguments. NOTE: this issue was originally disputed by a third party, but the dispute was retracted. NOTE: this issue was called an "integer overflow" in the original source, but this might be incorrect.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | database_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048251.htmlhttp://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048292.htmlhttp://securityreason.com/securityalert/2328http://www.securityfocus.com/archive/1/441345/100/0/threadedhttp://www.securityfocus.com/archive/1/441477/100/0/threadedhttp://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048251.htmlhttp://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048292.htmlhttp://securityreason.com/securityalert/2328http://www.securityfocus.com/archive/1/441345/100/0/threadedhttp://www.securityfocus.com/archive/1/441477/100/0/threaded
2007-03-02
Published