First published: Wed Oct 18 2006(Updated: )
Multiple unspecified vulnerabilities in Oracle Reports Developer component in Oracle Application Server 9.0.4.3 and 10.1.2.0.2, and Oracle E-Business Suite and Applications 11.5.10CU2, have unknown impact and remote attack vectors, aka Vuln# (1) REP01 and (2) REP02. NOTE: as of 20061027, Oracle has not disputed reports from a reliable researcher that these issues are related to (a) showenv and (b) parsequery for REP01, and (c) cellwrapper and (d) delimiter for REP02.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Java System Application Server | =9.0.4.3 | |
Oracle Java System Application Server | =10.1.2.0.2 | |
Oracle E-Business Suite | =11.5.10.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2006-5359 is currently unspecified due to the unknown impact of the vulnerabilities.
To fix CVE-2006-5359, you should apply the latest security patches provided by Oracle for the affected versions.
CVE-2006-5359 affects Oracle Application Server versions 9.0.4.3 and 10.1.2.0.2, as well as Oracle E-Business Suite version 11.5.10CU2.
CVE-2006-5359 has remote attack vectors, allowing potential exploits from a distance.
As of now, there are no publicly disclosed exploits specifically targeting CVE-2006-5359.