Oracle Database Server Enterprise Manager Console Remote Security Vulnerability
29 Jul. 2011
Summary
Unspecified vulnerability in the Enterprise Manager Console component in Oracle Database Server 10.1.0.5, 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.1, and 11.2.0.2; and Oracle Enterprise Manager Grid Control 10.1.0.6 and 10.2.0.5; allows remote attackers to affect integrity via unknown vectors related to Security.
Vulnerable Systems:
* Oracle11g Standard Edition 11.1 .7
* Oracle11g Standard Edition 11.2.0.2.0
* Oracle11g Standard Edition 11.2.0.1.0
* Oracle11g Enterprise Edition 11.2.0.2.0
* Oracle11g Enterprise Edition 11.2.0.1.0
* Oracle11g Enterprise Edition 11.1.0.7
* Oracle10g Standard Edition 10.2 .5
* Oracle10g Standard Edition 10.2 .3
* Oracle10g Standard Edition 10.1 .5
* Oracle10g Standard Edition 10.2.0.4
* Oracle10g Personal Edition 10.2 .5
* Oracle10g Personal Edition 10.2 .3
* Oracle10g Personal Edition 10.1 .5
* Oracle10g Personal Edition 10.2.0.4
* Oracle10g Enterprise Edition 10.2 .5
* Oracle10g Enterprise Edition 10.2 .3
* Oracle10g Enterprise Edition 10.1 .5
* Oracle10g Enterprise Edition 10.2.0.4
* Oracle Enterprise Manager Grid Control 10g 10.1 6
* Oracle Enterprise Manager Grid Control 10g 10.2.0.5
Oracle Database Server is prone to a remote vulnerability in Enterprise Manager Console.
The vulnerability can be exploited over the 'HTTP' protocol. The 'Security' sub component is affected.
Vendor Status:
Oracle as issued an update for this vulnerablity