CVE-2005-3445
UnknownEPSS 5.57%
Last modified
CVE-2005-3445 is a vulnerability of currently unknown severity. Multiple unspecified vulnerabilities in HTTP Server in Oracle Database Server 8i up to 10.1.0.4.2 and Application Server 1.0.2.2 up to 10.1.2.0 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB30 and AS03 or (2) DB31 and AS05.. EPSS estimates a 5.57% chance of exploitation in the next 30 days.
Description
Multiple unspecified vulnerabilities in HTTP Server in Oracle Database Server 8i up to 10.1.0.4.2 and Application Server 1.0.2.2 up to 10.1.2.0 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB30 and AS03 or (2) DB31 and AS05.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Application Server | 1.0.2.2 |
| Oracle | Application Server | 9.0.2.3 |
| Oracle | Application Server | 9.0.3.1 |
| Oracle | Application Server | 9.0.4.1 |
| Oracle | Application Server | 9.0.4.2 |
| Oracle | Application Server | 10.1.2.0.0 |
| Oracle | Application Server | 10.1.2.0.1 |
| Oracle | Application Server | 10.1.2.0.2 |
| Oracle | Database Server | 8.1.7.4 |
| Oracle | Database Server | 9.2.0.5 |
| Oracle | Database Server | 9.2.0.6 |
| Oracle | Database Server | 9.2.0.7 |
| Oracle | Database Server | 10.1.0.3 |
| Oracle | Database Server | 10.1.0.4 |
| Oracle | Database Server | 10.1.0.4.2 |
References
- http://www.kb.cert.org/vuls/id/210524US Government Resource
- http://www.kb.cert.org/vuls/id/890940US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-292A.htmlUS Government Resource
- http://www.kb.cert.org/vuls/id/210524US Government Resource
- http://www.kb.cert.org/vuls/id/890940US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-292A.htmlUS Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-3445?
Multiple unspecified vulnerabilities in HTTP Server in Oracle Database Server 8i up to 10.1.0.4.2 and Application Server 1.0.2.2 up to 10.1.2.0 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB30 and AS03 or (2) DB31 and AS05.
How severe is CVE-2005-3445?
Severity scoring for CVE-2005-3445 is pending analysis. The EPSS model estimates a 5.57% probability of exploitation in the next 30 days.
How do I fix CVE-2005-3445?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-3439Multiple unspecified vulnerabilities in Oracle Database Serv…
- CVE-2005-3440Unspecified vulnerability in Database Scheduler in Oracle Da…
- CVE-2005-3441Unspecified vulnerability in Intelligent Agent in Oracle Dat…
- CVE-2005-3442Multiple unspecified vulnerabilities in Oracle Database Serv…
- CVE-2005-3443Unspecified vulnerability in the Spatial component in Oracle…
- CVE-2005-3444Multiple unspecified vulnerabilities in the Programmatic Int…
- CVE-2005-3446Unspecified vulnerability in Internet Directory in Oracle Da…
- CVE-2005-3447Unspecified vulnerability in Single Sign-On in Oracle Databa…
- CVE-2005-3448Unspecified vulnerability in the OC4J Module in Oracle Appli…
- CVE-2005-3449Multiple unspecified vulnerabilities in Oracle Application S…
- CVE-2005-3450Unspecified vulnerability in the HTTP Server in Oracle Appli…
- CVE-2005-3451Unspecified vulnerability in SQL*ReportWriter in Oracle Appl…
Are you affected by CVE-2005-3445?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
