CVE-2006-1035: High severity Oracle E-Business Suite vulnerability
Published Mar 7, 2006
·Updated
Unspecified vulnerability in the Oracle Diagnostics module 2.2 and earlier allows remote attackers to access diagnostics tests via unknown attack vectors.
Affected Software
13 affected components
Oracle E-Business Suite=11.5.10.1
Oracle E-Business Suite=11.5.5
Oracle E-Business Suite=11.5.4
Oracle Diagnostics=2.2
Oracle E-Business Suite=11.5.7
Oracle E-Business Suite=11.5.10.2
Oracle E-Business Suite=11.5.10
Oracle Diagnostics=2.1
Oracle E-Business Suite=11.5.8
Oracle E-Business Suite=11.5.9
Oracle E-Business Suite=11.5.6
Oracle E-Business Suite=11.5.3
Oracle Diagnostics=2.0
Event History
Mar 7, 2006
CVE Published
11:02 AM
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1035?
The severity of CVE-2006-1035 is categorized as high due to potential unauthorized access to diagnostics tests.
2
How do I fix CVE-2006-1035?
To fix CVE-2006-1035, apply the latest patches provided by Oracle for the affected versions of E-Business Suite and Oracle Diagnostics.
3
What systems are affected by CVE-2006-1035?
CVE-2006-1035 affects Oracle E-Business Suite versions 11.5.3 to 11.5.10.2 and Oracle Diagnostics versions up to 2.2.
4
Can CVE-2006-1035 be exploited remotely?
Yes, CVE-2006-1035 allows remote attackers to exploit the vulnerability without physical access to the system.
5
What is the impact of CVE-2006-1035?
The impact of CVE-2006-1035 includes the potential for unauthorized access to sensitive diagnostics data.