CVE-2006-0435

Unspecified vulnerability in Oracle PL/SQL (PLSQL), as used in Database Server DS 9.2.0.7 and 10.1.0.5, Application Server 1.0.2.2, 9.0.4.2, 10.1.2.0.2, 10.1.2.1.0, and 10.1.3.0.0, E-Business Suite and Applications 11.5.10, and Collaboration Suite 10.1.1, 10.1.2.0, 10.1.2.1, and 9.0.4.2, allows attackers to bypass the PLSQLExclusion list and access excluded packages and procedures, aka Vuln# PLSQL01.
References
Link Resource
http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/041898.html
http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/041899.html
http://lists.grok.org.uk/pipermail/full-disclosure/2006-January/041742.html
http://secunia.com/advisories/18621
http://secunia.com/advisories/19712 Vendor Advisory
http://secunia.com/advisories/19859 Vendor Advisory
http://securityreason.com/securityalert/402
http://securityreason.com/securityalert/403
http://securitytracker.com/id?1015544
http://securitytracker.com/id?1015961 Patch
http://www.kb.cert.org/vuls/id/169164 US Government Resource
http://www.oracle.com/technetwork/topics/security/cpuapr2006-090826.html
http://www.oracle.com/technology/deploy/security/pdf/public_vuln_to_advisory_mapping.html
http://www.osvdb.org/22719
http://www.securityfocus.com/archive/1/423029/100/0/threaded
http://www.securityfocus.com/archive/1/423673/100/0/threaded
http://www.securityfocus.com/archive/1/423819/100/0/threaded
http://www.securityfocus.com/archive/1/423822/100/0/threaded
http://www.securityfocus.com/archive/1/424394/100/0/threaded
http://www.securityfocus.com/archive/1/432267/100/0/threaded
http://www.securityfocus.com/archive/1/432267/100/0/threaded
http://www.securityfocus.com/bid/16384
http://www.vupen.com/english/advisories/2006/0338 Vendor Advisory
http://www.vupen.com/english/advisories/2006/1397 Vendor Advisory
http://www.vupen.com/english/advisories/2006/1571 Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/24363
http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/041898.html
http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/041899.html
http://lists.grok.org.uk/pipermail/full-disclosure/2006-January/041742.html
http://secunia.com/advisories/18621
http://secunia.com/advisories/19712 Vendor Advisory
http://secunia.com/advisories/19859 Vendor Advisory
http://securityreason.com/securityalert/402
http://securityreason.com/securityalert/403
http://securitytracker.com/id?1015544
http://securitytracker.com/id?1015961 Patch
http://www.kb.cert.org/vuls/id/169164 US Government Resource
http://www.oracle.com/technetwork/topics/security/cpuapr2006-090826.html
http://www.oracle.com/technology/deploy/security/pdf/public_vuln_to_advisory_mapping.html
http://www.osvdb.org/22719
http://www.securityfocus.com/archive/1/423029/100/0/threaded
http://www.securityfocus.com/archive/1/423673/100/0/threaded
http://www.securityfocus.com/archive/1/423819/100/0/threaded
http://www.securityfocus.com/archive/1/423822/100/0/threaded
http://www.securityfocus.com/archive/1/424394/100/0/threaded
http://www.securityfocus.com/archive/1/432267/100/0/threaded
http://www.securityfocus.com/archive/1/432267/100/0/threaded
http://www.securityfocus.com/bid/16384
http://www.vupen.com/english/advisories/2006/0338 Vendor Advisory
http://www.vupen.com/english/advisories/2006/1397 Vendor Advisory
http://www.vupen.com/english/advisories/2006/1571 Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/24363
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:oracle:application_server:*:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:1.0.2.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:1.0.2.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:1.0.2.1s:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:1.0.2.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:1.0.2.2.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.2.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.2.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.2.3:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.3:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.4.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.0.4.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.2.0.6:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:9.2.0.7:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.0.4:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.2.1.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:application_server:10.1.2_.0.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:1.0.2.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:1.0.2.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:1.0.2.1s_for_apps:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:1.0.2.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:1.0.2.2_roll_up_2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:8.1.7:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:9.0.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:9.0.2:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:9.0.2.3:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:9.0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:9.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:9.2.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:06

Type Values Removed Values Added
References () http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/041898.html - () http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/041898.html -
References () http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/041899.html - () http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/041899.html -
References () http://lists.grok.org.uk/pipermail/full-disclosure/2006-January/041742.html - () http://lists.grok.org.uk/pipermail/full-disclosure/2006-January/041742.html -
References () http://secunia.com/advisories/18621 - () http://secunia.com/advisories/18621 -
References () http://secunia.com/advisories/19712 - Vendor Advisory () http://secunia.com/advisories/19712 - Vendor Advisory
References () http://secunia.com/advisories/19859 - Vendor Advisory () http://secunia.com/advisories/19859 - Vendor Advisory
References () http://securityreason.com/securityalert/402 - () http://securityreason.com/securityalert/402 -
References () http://securityreason.com/securityalert/403 - () http://securityreason.com/securityalert/403 -
References () http://securitytracker.com/id?1015544 - () http://securitytracker.com/id?1015544 -
References () http://securitytracker.com/id?1015961 - Patch () http://securitytracker.com/id?1015961 - Patch
References () http://www.kb.cert.org/vuls/id/169164 - US Government Resource () http://www.kb.cert.org/vuls/id/169164 - US Government Resource
References () http://www.oracle.com/technetwork/topics/security/cpuapr2006-090826.html - () http://www.oracle.com/technetwork/topics/security/cpuapr2006-090826.html -
References () http://www.oracle.com/technology/deploy/security/pdf/public_vuln_to_advisory_mapping.html - () http://www.oracle.com/technology/deploy/security/pdf/public_vuln_to_advisory_mapping.html -
References () http://www.osvdb.org/22719 - () http://www.osvdb.org/22719 -
References () http://www.securityfocus.com/archive/1/423029/100/0/threaded - () http://www.securityfocus.com/archive/1/423029/100/0/threaded -
References () http://www.securityfocus.com/archive/1/423673/100/0/threaded - () http://www.securityfocus.com/archive/1/423673/100/0/threaded -
References () http://www.securityfocus.com/archive/1/423819/100/0/threaded - () http://www.securityfocus.com/archive/1/423819/100/0/threaded -
References () http://www.securityfocus.com/archive/1/423822/100/0/threaded - () http://www.securityfocus.com/archive/1/423822/100/0/threaded -
References () http://www.securityfocus.com/archive/1/424394/100/0/threaded - () http://www.securityfocus.com/archive/1/424394/100/0/threaded -
References () http://www.securityfocus.com/archive/1/432267/100/0/threaded - () http://www.securityfocus.com/archive/1/432267/100/0/threaded -
References () http://www.securityfocus.com/bid/16384 - () http://www.securityfocus.com/bid/16384 -
References () http://www.vupen.com/english/advisories/2006/0338 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/0338 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2006/1397 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/1397 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2006/1571 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/1571 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/24363 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/24363 -

Information

Published : 2006-01-26 11:07

Updated : 2024-11-21 00:06


NVD link : CVE-2006-0435

Mitre link : CVE-2006-0435

CVE.ORG link : CVE-2006-0435


JSON object : View

Products Affected

oracle

  • http_server
  • application_server