CVE-2008-1815: SQL Injection
Unspecified vulnerability in the Change Data Capture component in Oracle Database 10.1.0.5, 10.2.0.3, and 11.1.0.6 has unknown impact and remote authenticated attack vectors related to DBMSCDCUTILITY, aka DB02. NOTE: the previous information was obtained from the April 2008 CPU. Oracle has not commented on reliable researcher claims that DB02 is for SQL injection in LOCKCHANGESET.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1815?
The severity of CVE-2008-1815 is currently unspecified, indicating that the impact could range from low to critical.
How do I fix CVE-2008-1815?
To fix CVE-2008-1815, it is recommended to apply the latest patches provided by Oracle for the affected database versions.
What Oracle Database versions are affected by CVE-2008-1815?
CVE-2008-1815 affects Oracle Database versions 10.1.0.5, 10.2.0.3, and 11.1.0.6.
Can CVE-2008-1815 be exploited remotely?
Yes, CVE-2008-1815 can be exploited via remote authenticated attack vectors.
What component of Oracle Database is involved in CVE-2008-1815?
CVE-2008-1815 involves an unspecified vulnerability in the Change Data Capture component.