Lucene search

K
cveOracleCVE-2009-0985
HistoryApr 15, 2009 - 10:30 a.m.

CVE-2009-0985

2009-04-1510:30:00
oracle
web.nvd.nist.gov
81
cve-2009-0985
oracle database
vulnerability
imp_full_database role
confidentiality
integrity
availability
nvd

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:S/C:C/I:C/A:C

AI Score

5.8

Confidence

Low

EPSS

0.004

Percentile

72.7%

Unspecified vulnerability in the Core RDBMS component in Oracle Database 10.1.0.5, 10.2.0.4, and 11.1.0.6 allows remote authenticated users with the IMP_FULL_DATABASE role to affect confidentiality, integrity, and availability.

Affected configurations

Nvd
Node
oracledatabase_10gMatch10.1.0.5
OR
oracledatabase_10gMatch10.2.0.4
OR
oracledatabase_11gMatch11.1.0.6
VendorProductVersionCPE
oracledatabase_10g10.1.0.5cpe:2.3:a:oracle:database_10g:10.1.0.5:*:*:*:*:*:*:*
oracledatabase_10g10.2.0.4cpe:2.3:a:oracle:database_10g:10.2.0.4:*:*:*:*:*:*:*
oracledatabase_11g11.1.0.6cpe:2.3:a:oracle:database_11g:11.1.0.6:*:*:*:*:*:*:*

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:S/C:C/I:C/A:C

AI Score

5.8

Confidence

Low

EPSS

0.004

Percentile

72.7%