7.2
CVSSv2

CVE-2007-1442

Published: 14/03/2007 Updated: 15/11/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Oracle Database 10g uses a NULL pDacl parameter when calling the SetSecurityDescriptorDacl function to create discretionary access control lists (DACLs), which allows local users to gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle database server 10.2.1

oracle database server 10.2.2

oracle database server 10.2.3