Описание
Oracle Database 9i and 10g disables Fine Grained Audit (FGA) after the SYS user executes a SELECT statement on an FGA object, which makes it easier for attackers to escape detection.
Ссылки
- Third Party AdvisoryUS Government Resource
- ExploitVendor Advisory
- Third Party AdvisoryUS Government Resource
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:oracle:application_server:10.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle10g:enterprise_10.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle10g:enterprise_10.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle10g:enterprise_10.1.0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle10g:personal_10.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle10g:personal_10.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle10g:personal_10.1.0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle10g:standard_10.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle10g:standard_10.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle10g:standard_10.1.0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:9.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:9.0.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:9.0.1.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:9.0.1.3:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:9.0.1.4:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:9.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:9.2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:9.2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:release_2_9.2.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle9i:release_2_9.2.2:*:*:*:*:*:*:*
EPSS
Процентиль: 80%
0.01414
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Oracle Database 9i and 10g disables Fine Grained Audit (FGA) after the SYS user executes a SELECT statement on an FGA object, which makes it easier for attackers to escape detection.
EPSS
Процентиль: 80%
0.01414
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other