← Back

CVE-2007-3854

nvd nist
Published: Jul 18, 2007Modified: Apr 23, 2026

JSON object

Loading...
5.5
Vector
AV:N/AC:L/Au:S/C:P/I:P/A:N
Exploitability: 8.0 / Impact: 4.9
Source: NVD

Description

Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+, 9.2.0.7, and 10.1.0.5 allow remote authenticated users to have unknown impact via (1) SYS.DBMS_PRVTAQIS in the Advanced Queuing component (DB02) and (2) MDSYS.MD in the Spatial component (DB12). NOTE: Oracle has not disputed reliable researcher claims that DB02 is for SQL injection and DB12 is for a buffer overflow.

Affected (38)

9 products
Apex
Application Server
Collaboration Suite
Database Server
E Business Suite
Peoplesoft Enterprise Peopletools
Secure Enterprise Search
Configuration A
38 vulnerable
Vulnerable SoftwareAffected Versions
Oracle
Version 1.5.0
Version 1.6.1
Version 2.0
Version 2.2
Oracle
Version 1.0.2.2 r2
Version 10.1.2.0.1
Version 10.1.2.0.2
Version 10.1.2.1.0
Version 10.1.2.2.0
Version 10.1.3.0.0
Version 10.1.3.1.0
Version 10.1.3.2.0
Version 10.1.3.3.0
Version 9.0.4.3
Version 10.1.2
Oracle
Version 10.1.0.5
Version 10.2.0.2 r2
Version 10.2.0.3 r2
Version 9.0.1.5
Version 9.2.0.7 r2
Version 9.2.0.8 r2
Version 9.2.0.8dv r2
Oracle
Version 11.5.10.2
Version 11.5.10
Version 11.5.8
Version 11.5.9
Version 12.0.0
Version 12.0.1
Oracle
Version 8.9
Version 9.0
Oracle
Version 8.9
Version 9.0
Oracle
Version 8.22
Version 8.47
Version 8.48
Version 8.49
Oracle
Version 10.1.6
Version 10.1.8

References (26)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
US Government Resource
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.