First published: Tue Jan 18 2005(Updated: )
SQL injection vulnerability in Oracle Database 9i and 10g allows remote attackers to execute arbitrary SQL commands and gain privileges.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Database | ||
Oracle Database | =10.2.1-r2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-0297 has a high severity due to its potential for remote exploitation and privilege escalation.
To fix CVE-2005-0297, apply the recommended patches provided by Oracle for affected versions of the database.
CVE-2005-0297 affects Oracle Database 9i and 10g, specifically versions around 10.2.1.
CVE-2005-0297 facilitates SQL injection attacks that allow remote attackers to execute arbitrary SQL commands.
Yes, CVE-2005-0297 can lead to data breaches as it allows attackers to gain unauthorized access to sensitive database information.