← Back

CVE-2006-2505

nvd nist
Published: May 22, 2006Modified: Apr 16, 2026

JSON object

Loading...
3.6
Vector
AV:L/AC:L/Au:N/C:N/I:P/A:P
Exploitability: 3.9 / Impact: 4.9
Source: NVD

Description

Oracle Database Server 10g Release 2 allows local users to execute arbitrary SQL queries via a reference to a malicious package in the TYPE_NAME argument in the (1) GET_DOMAIN_INDEX_TABLES or (2) GET_V2_DOMAIN_INDEX_TABLES function in the DBMS_EXPORT_EXTENSION package.

Affected (1)

1 product
Database Server
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version release_2

References (12)

Source: cve@mitre.org
ExploitVendor Advisory
Source: cve@mitre.org
US Government Resource
Source: cve@mitre.org
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit

Timeline

No history available yet.