cbcvebase.
CVE-2010-0866
published 2010-04-13

CVE-2010-0866: Unspecified vulnerability in the JavaVM component in Oracle Database 11.1.0.7 and 11.2.0.1 allows remote authenticated users to affect confidentiality…

PriorityP344medium6.5CVSS 2.0
AVNACLAuSCPIPAP
EXPLOIT
EPSS
11.25%
95.5th percentile
Unspecified vulnerability in the JavaVM component in Oracle Database 11.1.0.7 and 11.2.0.1 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.

Affected

2 ranges
VendorProductVersion rangeFixed in
oracledatabase_server
oracledatabase_server

Detection & IOCsextracted from sources · hover to see the quote

otherDBMS_JVM_EXP_PERMS
pathmodules/auxiliary/sqli/oracle/jvm_os_code_10g.rb
pathmodules/auxiliary/sqli/oracle/jvm_os_code_11g.rb
  • Monitor Oracle DB audit logs for any session with 'create session' privilege invoking DBMS_JVM_EXP_PERMS package calls, which is the exploitation vector for this CVE.
  • Alert on unexpected Java IO privilege grants within Oracle DB sessions, particularly from low-privileged accounts that only hold 'create session' privilege.
  • Detection scope should include Oracle 10g R2, 11g R1, and 11g R2 on Windows; these are the confirmed affected/exploitable platform versions.
  • ·Exploitation is limited to Windows-based Oracle DB deployments; Linux/Unix instances of the same versions are not affected by this specific exploit path.
  • ·The vulnerability requires the attacker to already hold 'create session' privilege on the Oracle DB; unauthenticated exploitation is not possible.
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.