CVE-2006-2505: Low severity oracle database server vulnerability
Oracle Database Server 10g Release 2 allows local users to execute arbitrary SQL queries via a reference to a malicious package in the TYPENAME argument in the (1) GETDOMAININDEXTABLES or (2) GETV2DOMAININDEXTABLES function in the DBMSEXPORTEXTENSION package.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-2505?
CVE-2006-2505 is considered a critical vulnerability due to its potential to allow local users to execute arbitrary SQL queries.
How do I fix CVE-2006-2505?
To remediate CVE-2006-2505, ensure that only trusted users have access to the Oracle Database Server to limit exposure.
What products are affected by CVE-2006-2505?
CVE-2006-2505 specifically affects Oracle Database Server 10g Release 2.
Can CVE-2006-2505 be exploited remotely?
No, CVE-2006-2505 requires local access to exploit the vulnerability.
What are the implications of CVE-2006-2505?
The implications of CVE-2006-2505 include unauthorized access to sensitive data through arbitrary SQL query execution.