CVE-2010-2412
published 2010-10-14CVE-2010-2412: Unspecified vulnerability in the OLAP component in Oracle Database Server 11.1.0.7 allows remote authenticated users to affect confidentiality and integrity…
PriorityP424medium5.5CVSS 2.0
AVNACLAuSCPIPAN
EPSS
1.44%
70.4th percentile
Unspecified vulnerability in the OLAP component in Oracle Database Server 11.1.0.7 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | httpd | — | — |
| oracle | database_server | — | — |
CVSS provenance
nvdv2.05.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:N
vendor_apache10.0LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rpcq-h877-f88q: Unspecified vulnerability in the OLAP component in Oracle Database Server 11
ghsa_unreviewed·2022-05-17
CVE-2010-2412 [MEDIUM] GHSA-rpcq-h877-f88q: Unspecified vulnerability in the OLAP component in Oracle Database Server 11
Unspecified vulnerability in the OLAP component in Oracle Database Server 11.1.0.7 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
Apache
Apache httpd: CVE-2009-2412
vendor_apache·CVSS 10.0
CVE-2009-2412 [LOW] Apache httpd: CVE-2009-2412
Apache httpd: CVE-2009-2412
A flaw in apr_palloc() in the bundled copy of APR could cause heap overflows in programs that try to apr_palloc() a user controlled size. The Apache HTTP Server itself does not pass unsanitized user-provided sizes to this function, so it could only be triggered through some other application which uses apr_palloc() in a vulnerable way. Reported to security team 2009-07-27 Issue public 2009-08-04 Update 2.2.13 released 2009-08-09 Update 2.0.64 released 2010-10-19 Affects 2.2.12, 2.2.11, 2.2.10, 2.2.9, 2.2.8, 2.2.6, 2.2.5, 2.2.4, 2.2.3, 2.2.2, 2.2.0, 2.0.63, 2.0.61, 2.0.59, 2.0.58, 2.0.55, 2.0.54, 2.0.53, 2.0.52, 2.0.51, 2.0.50, 2.0.49, 2.0.48, 2.0.47, 2.0.46, 2.0.45, 2.0.44, 2.0.43, 2.0.42, 2.0.40, 2.0.39, 2.0.37, 2.0.36, 2.0.35
Severity: low
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2010-10-14
Published