CVE Database
/

CVE-2006-1876

Back to search

CVE-2006-1876

Published: Apr 20, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Unspecified vulnerability in Oracle Database Server 9.2.0.7 and 10.1.0.4 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB12. NOTE: details are unavailable from Oracle, but as of 20060421, they have not publicly disputed a claim by a reliable independent researcher that states that the problem is SQL injection in the (1) GEN_RID_RANGE_BY_AREA and (2) GEN_RID_RANGE functions in the MDSYS.SDO_PRIDX package.

VendorProductVersions

n/a

n/a

affected
n/a

References

19712
third-party-advisory
x_refsource_SECUNIA
19859
third-party-advisory
x_refsource_SECUNIA
VU#240249
third-party-advisory
x_refsource_CERT-VN
ADV-2006-1571
vdb-entry
x_refsource_VUPEN
17590
vdb-entry
x_refsource_BID
SSRT061148
vendor-advisory
x_refsource_HP
ADV-2006-1397
vdb-entry
x_refsource_VUPEN
HPSBMA02113
vendor-advisory
x_refsource_HP
1015961
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now