AplusWebMaster
Topic Starter
FYI…
- http://secunia.com/advisories/19712/
Release Date: 2006-04-19
Last Update: 2006-04-20
Critical: Highly critical
Impact: Unknown, Manipulation of data
Where: From remote …
Description:
Multiple vulnerabilities have been reported in various Oracle products. Some have an unknown impact, and others can be exploited to conduct SQL injection attacks…
Solution Status: Vendor Patch …
Original Advisory: Oracle:
>>> http://www.oracle.com/technology/deploy/se…cpuapr2006.html
——————————————————–
- http://www.techweb.com/article/printableAr…_section=700028
April 20, 2006
"An exploit that leverages one of the three-dozen vulnerabilities patched Tuesday by Oracle has been spotted in the wild, a security company said Thursday, making patching even more essential. According to an alert sent by Symantec to customers of its DeepSight system, an exploit for one of the Oracle flaws was published on the Bugtraq security mailing list. The exploit, which targets one of the Oracle Database 10g bugs, escalates privileges of existing users to give them total access to the database…"
* http://www.securityfocus.com/archive/1/431353/30/30/threaded

- http://secunia.com/advisories/19712/
Release Date: 2006-04-19
Last Update: 2006-04-20
Critical: Highly critical
Impact: Unknown, Manipulation of data
Where: From remote …
Description:
Multiple vulnerabilities have been reported in various Oracle products. Some have an unknown impact, and others can be exploited to conduct SQL injection attacks…
Solution Status: Vendor Patch …
Original Advisory: Oracle:
>>> http://www.oracle.com/technology/deploy/se…cpuapr2006.html
——————————————————–
- http://www.techweb.com/article/printableAr…_section=700028
April 20, 2006
"An exploit that leverages one of the three-dozen vulnerabilities patched Tuesday by Oracle has been spotted in the wild, a security company said Thursday, making patching even more essential. According to an alert sent by Symantec to customers of its DeepSight system, an exploit for one of the Oracle flaws was published on the Bugtraq security mailing list. The exploit, which targets one of the Oracle Database 10g bugs, escalates privileges of existing users to give them total access to the database…"
* http://www.securityfocus.com/archive/1/431353/30/30/threaded