Vulnerable Systems:
* Oracle Database Server 11.1.0.7
* Oracle Enterprise Manager Grid Control 10g
Oracle Database and Enterprise Manager Grid Control are prone to multiple an SQL-injection vulnerabilities in Application Service Level Management.
Exploiting these issues could allow the attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
Vendor Status:
Oracle as issued an update for this vulnerablity