CVE Vulnerabilities

CVE-2008-1817

Published: Apr 16, 2008 | Modified: Oct 11, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.3, and 11.1.0.6 have unknown impact and remote attack vectors related to (1) SDO_IDX in the Spatial component, aka DB07; and (2) Core RDBMS, aka DB10. NOTE: the previous information was obtained from the Oracle CPU. Oracle has not commented on reliable researcher claims that DB07 is SQL injection.

Affected Software

Name Vendor Start Version End Version
Database_9i Oracle 9.2.0.8dv (including) 9.2.0.8dv (including)
Database_server Oracle 9.0.1.5 (including) 9.0.1.5 (including)
Database_server Oracle 10.1.0.5 (including) 10.1.0.5 (including)
Database_server Oracle 10.2.0.3 (including) 10.2.0.3 (including)
Database_server Oracle 11.1.0.6 (including) 11.1.0.6 (including)

References