First published: Wed Jan 19 2011(Updated: )
Unspecified vulnerability in the Audit Vault component in Oracle Audit Vault 10.2.3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from a reliable third party coordinator that this issue is related to a crafted parameter in an action.execute request to the av component on TCP port 5700.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Audit Vault | =10.2.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4449 has not been assigned a specific severity rating, but it impacts confidentiality, integrity, and availability.
To address CVE-2010-4449, it is recommended to apply the latest security patches provided by Oracle for Audit Vault.
CVE-2010-4449 specifically affects the Audit Vault component in Oracle Audit Vault version 10.2.3.2.
Yes, CVE-2010-4449 allows remote attackers to exploit the vulnerability via unknown vectors.
CVE-2010-4449 affects the confidentiality, integrity, and availability of the affected systems.