4.9
CVSSv2

CVE-2012-0525

Published: 03/05/2012 Updated: 11/10/2013
CVSS v2 Base Score: 4.9 | Impact Score: 4.9 | Exploitability Score: 6.8
VMScore: 436
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N

Vulnerability Summary

Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Database Server 11.1.0.7, 11.2.0.2, and 11.2.0.3, and Oracle Enterprise Manager Grid Control 10.2.0.5 and 11.1.0.1, allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Enterprise Config Management.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle database server 11.1.0.7

oracle database server 11.2.0.2

oracle database server 11.2.0.3

oracle enterprise manager grid control 10.2.0.5

oracle enterprise manager grid control 11.1.0.1

Exploits

Team SHATTER Security Advisory - Oracle Enterprise Manager Database Control versions 11107 and 11203 (and previous patchsets) along with Oracle Enterprise Manager Grid Control versions 10205 and 11101 (and previous patchsets) suffer from a remote SQL injection vulnerability in the searchPage web page ...