Lucene search

K
cveOracleCVE-2010-3590
HistoryJan 19, 2011 - 4:00 p.m.

CVE-2010-3590

2011-01-1916:00:02
oracle
web.nvd.nist.gov
69
oracle
database
server
vulnerability
security
remote
authentication
confidentiality
integrity
mdsys

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:P/I:P/A:N

AI Score

5.5

Confidence

Low

EPSS

0.002

Percentile

60.1%

Unspecified vulnerability in the Oracle Spatial component in Oracle Database Server 10.2.0.4, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect confidentiality and integrity, related to MDSYS.

Affected configurations

Nvd
Node
oracledatabase_serverMatch10.2.0.4
OR
oracledatabase_serverMatch11.1.0.7
OR
oracledatabase_serverMatch11.2.0.1
VendorProductVersionCPE
oracledatabase_server10.2.0.4cpe:2.3:a:oracle:database_server:10.2.0.4:*:*:*:*:*:*:*
oracledatabase_server11.1.0.7cpe:2.3:a:oracle:database_server:11.1.0.7:*:*:*:*:*:*:*
oracledatabase_server11.2.0.1cpe:2.3:a:oracle:database_server:11.2.0.1:*:*:*:*:*:*:*

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:P/I:P/A:N

AI Score

5.5

Confidence

Low

EPSS

0.002

Percentile

60.1%