CVE-2008-1816
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/04/2008
Last modified:
09/04/2025
Description
Multiple unspecified vulnerabilities in Oracle Database 10.1.0.5 and 10.2.0.3 have unknown impact and remote authenticated attack vectors related to (1) SDO_UTIL in the Oracle Spatial component, aka DB05; or (2) fine grained auditing in the Audit component, aka DB14. NOTE: the previous information was obtained from the Oracle CPU. Oracle has not commented on reliable researcher claims that DB05 is SQL injection.
Impact
Base Score 2.0
5.50
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:oracle:database_server:10.1.0.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:database_server:10.2.0.3:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/29829
- http://secunia.com/advisories/29874
- http://www.oracle.com/technetwork/topics/security/cpuapr2008-082075.html
- http://www.red-database-security.com/advisory/oracle_sql_injection_sdo_util.html
- http://www.securityfocus.com/archive/1/490918/100/0/threaded
- http://www.securityfocus.com/archive/1/491024/100/0/threaded
- http://www.securityfocus.com/archive/1/491024/100/0/threaded
- http://www.securitytracker.com/id?1019855=
- http://www.vupen.com/english/advisories/2008/1233/references
- http://www.vupen.com/english/advisories/2008/1267/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41858
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41999
- https://exchange.xforce.ibmcloud.com/vulnerabilities/42000
- http://secunia.com/advisories/29829
- http://secunia.com/advisories/29874
- http://www.oracle.com/technetwork/topics/security/cpuapr2008-082075.html
- http://www.red-database-security.com/advisory/oracle_sql_injection_sdo_util.html
- http://www.securityfocus.com/archive/1/490918/100/0/threaded
- http://www.securityfocus.com/archive/1/491024/100/0/threaded
- http://www.securityfocus.com/archive/1/491024/100/0/threaded
- http://www.securitytracker.com/id?1019855=
- http://www.vupen.com/english/advisories/2008/1233/references
- http://www.vupen.com/english/advisories/2008/1267/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41858
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41999
- https://exchange.xforce.ibmcloud.com/vulnerabilities/42000