PT-2010-2577 · Oracle · Oracle Database

Published

2010-04-13

·

Updated

2012-10-23

·

CVE-2010-0854

CVSS v2.0

2.1

Low

VectorAV:N/AC:H/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Oracle Database versions 9.2.0.8 through 11.1.0.7
Description The issue allows remote authenticated users to affect integrity, related to "SELECT, INSERT or DELETE on tables subject to auditing." Additionally, it enables remote attackers to bypass security restrictions, execute arbitrary SQL commands, and gain access to sensitive data.
Recommendations For Oracle Database versions 9.2.0.8 through 11.1.0.7, apply the necessary patches or updates to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2010-0854

Affected Products

Oracle Database