CVE-2006-5341: SQL Injection
Multiple unspecified vulnerabilities in XMLDB component in Oracle Database 9.2.0.8, 10.1.0.5, and 10.2.0.2 have unknown impact and remote authenticated attack vectors, aka (1) Vuln# DB14 and (2) DB15 related to xdb.dbmsxdbz. NOTE: as of 20061023, Oracle has not disputed reports from reliable third parties that DB14 is for SQL injection in the PITRIGDROP and PITRIGDROPMETADATA functions in XDBPITRIGPKG, and DB15 is for SQL injection in DISABLEHIERARCHYINTERNAL in DBMSXDBZ.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-5341?
The severity of CVE-2006-5341 is unknown as it is related to multiple unspecified vulnerabilities in Oracle Database.
How do I fix CVE-2006-5341?
To fix CVE-2006-5341, it is recommended to apply the latest patches provided by Oracle for affected database versions.
Which versions of Oracle Database are affected by CVE-2006-5341?
CVE-2006-5341 affects Oracle Database versions 9.2.0.8, 10.1.0.5, and 10.2.0.2.
What types of attack vectors are associated with CVE-2006-5341?
CVE-2006-5341 involves remote authenticated attack vectors.
Is there a known exploit for CVE-2006-5341?
As of now, there are no known exploits publicly available for CVE-2006-5341.