PT-2006-1365 · Oracle · Oracle Database Server+3

Alexander Kornbrust

+8

·

Published

2006-01-18

·

Updated

2017-07-20

·

CVE-2006-0291

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Oracle Database Server version 10.2.0.1 Oracle Application Server versions 9.0.4.2 and 10.1.2.1 Oracle Collaboration Suite Release 2 version 9.0.4.2 (Oracle9i) Oracle E-Business Suite and Applications version 11.5.10
Description The issue concerns multiple unspecified vulnerabilities in various Oracle products, including Database Server, Application Server, Collaboration Suite, and E-Business Suite. These vulnerabilities are identified by Oracle Vuln# (1) WF02 and (2) WF03 in the Oracle Workflow Cartridge component. The impact and attack vectors of these vulnerabilities are not specified.
Recommendations For Oracle Database Server version 10.2.0.1, update to a version that includes the fix for the Oracle Workflow Cartridge component vulnerabilities. For Oracle Application Server versions 9.0.4.2 and 10.1.2.1, update to a version that includes the fix for the Oracle Workflow Cartridge component vulnerabilities. For Oracle Collaboration Suite Release 2 version 9.0.4.2 (Oracle9i), update to a version that includes the fix for the Oracle Workflow Cartridge component vulnerabilities. For Oracle E-Business Suite and Applications version 11.5.10, update to a version that includes the fix for the Oracle Workflow Cartridge component vulnerabilities.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-0291

Affected Products

Oracle Application Server
Oracle Collaboration Suite
Oracle Database Server
Oracle E-Business Suite