Unspecified vulnerability in the CMDB Metadata & Instance APIs component in Oracle Database Server and Oracle Enterprise Manager Grid Control allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
Vulnerable Systems:
* Oracle11g Standard Edition 11.1 .7
* Oracle11g Standard Edition 11.2.0.2.0
* Oracle11g Standard Edition 11.2.0.1.0
* Oracle11g Enterprise Edition 11.2.0.2.0
* Oracle11g Enterprise Edition 11.2.0.1.0
* Oracle11g Enterprise Edition 11.1.0.7
* Oracle10g Standard Edition 10.2 .5
* Oracle10g Standard Edition 10.2 .3
* Oracle10g Standard Edition 10.1 .5
* Oracle10g Standard Edition 10.2.0.4
* Oracle10g Personal Edition 10.2 .5
* Oracle10g Personal Edition 10.2 .3
* Oracle10g Personal Edition 10.1 .5
* Oracle10g Personal Edition 10.2.0.4
* Oracle10g Enterprise Edition 10.2 .5
* Oracle10g Enterprise Edition 10.2 .3
* Oracle10g Enterprise Edition 10.1 .5
* Oracle10g Enterprise Edition 10.2.0.4
* Oracle Enterprise Manager Grid Control 10g 10.1 6
* Oracle Enterprise Manager Grid Control 10g 10.2.0.5
Oracle Oracle Enterprise Manager Grid Control is prone to a remote vulnerability in CMDB Metadata & Instance APIs. The vulnerability can be exploited over the 'Oracle NET' protocol.
Vendor Status:
Oracle as issued an update for this vulnerablity