First published: Wed Jan 18 2006(Updated: )
Unspecified vulnerability in the Java Net component of Oracle Database Server 8.1.7.4, 9.0.1.5, 9.0.1.5 FIPS, 9.2.0.7, and 10.1.0.4, and Application Server 1.0.2.2, 9.0.4.2, and 10.1.2.0.2, has unspecified impact and attack vectors, as identified by Oracle Vuln# JN01.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Application Server | =10.1.2.0.2 | |
Oracle Database | =9.0.1.5 | |
Oracle Database | =8.1.7.4 | |
Oracle Database | =9.0.1.5 | |
Oracle Database | =9.2.0.7 | |
Oracle Application Server | =1.0.2.2 | |
Oracle Application Server | =9.0.4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The exact severity of CVE-2006-0285 is unspecified, as the impact and attack vectors are not clearly defined.
To mitigate CVE-2006-0285, it is recommended to apply the latest patches provided by Oracle for affected versions.
CVE-2006-0285 affects Oracle Database Server versions 8.1.7.4, 9.0.1.5, 9.2.0.7, and 10.1.0.4, along with specific versions of Oracle Application Server.
CVE-2006-0285 has unspecified attack vectors, so the potential for remote exploitation cannot be determined without further details.
While CVE-2006-0285 was reported in 2006, vulnerabilities in legacy software should always be assessed and mitigated accordingly in current environments.