First published: Wed Apr 16 2014(Updated: )
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to the "Grant Any Object Privilege."
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Database | =11.1.0.7 | |
Oracle Database | =11.2.0.3 | |
Oracle Database | =11.2.0.4 | |
Oracle Database | =12.1.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-2408 is classified as a vulnerability that could allow remote authenticated users to affect confidentiality and integrity.
To remediate CVE-2014-2408, ensure you apply the latest security patches provided by Oracle for affected database versions.
CVE-2014-2408 affects Oracle Database Server versions 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1.
CVE-2014-2408 can be exploited by remote authenticated users who have specific privileges.
The potential impact of CVE-2014-2408 includes unauthorized access affecting the confidentiality and integrity of database objects.