CVE-2008-2604Oracle Database Server vulnerability

8 documents5 sources
Severity
6.5MEDIUMNVD
NVD4.0
EPSS
1.0%
top 22.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 15
Latest updateMay 1

Description

Unspecified vulnerability in the Authentication component in Oracle Database 11.1.0.6 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2605.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 8.0 | Impact: 6.4

Affected Packages1 packages

🔴Vulnerability Details

4
GHSA
GHSA-7f49-8w55-7r4r: Unspecified vulnerability in the Authentication component in Oracle Database 112022-05-01
GHSA
GHSA-xj96-hvw8-2mj2: Unspecified vulnerability in the Authentication component in Oracle Database 112022-05-01
CVEList
CVE-2008-2604: Unspecified vulnerability in the Authentication component in Oracle Database 112008-07-15
CVEList
CVE-2008-2605: Unspecified vulnerability in the Authentication component in Oracle Database 112008-07-15

💥Exploits & PoCs

1
Exploit-DB
ZYXEL ZyWALL Quagga/Zebra - 'Default Password' Remote Code Execution2008-03-21

💬Community

1
Bugzilla
CVE-2008-4297 mercurial: missing allowpull permission check in hgweb2008-09-29
CVE-2008-2604 — Oracle Database Server vulnerability | cvebase