CVE-2006-1875: SQL Injection
Published Apr 20, 2006
·Updated
Unspecified vulnerability in Oracle Database Server 9.0.1.5, 9.2.0.7, and 10.1.0.5 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB11. NOTE: Oracle has not disputed reliable researcher claims that this issue is SQL injection in MDSYS.SDOLRSTRIGINS.
Affected Software
3 affected components
Oracle Database Server=9.0.1.5
Oracle Database Server=9.2.0.7
Oracle Database Server=10.1.0.5
Remediation
Patch Available
Patch Available
Patch Available
Event History
Apr 20, 2006
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1875?
CVE-2006-1875 is a vulnerability in Oracle Database Server with an unspecified severity and unknown impact.
2
How do I fix CVE-2006-1875?
To fix CVE-2006-1875, it is recommended to apply the latest patches from Oracle for the affected versions.
3
What versions of Oracle Database are affected by CVE-2006-1875?
CVE-2006-1875 affects Oracle Database versions 9.0.1.5, 9.2.0.7, and 10.1.0.5.
4
What is the nature of the vulnerability described in CVE-2006-1875?
CVE-2006-1875 involves SQL injection vulnerabilities in the Oracle Spatial component.
5
Are there known attack vectors for CVE-2006-1875?
The specific attack vectors for CVE-2006-1875 remain unknown as detailed by Oracle.