CVE-2006-0285
Last modified
CVE-2006-0285 is a vulnerability of currently unknown severity. Unspecified vulnerability in the Java Net component of Oracle Database Server 8.1.7.4, 9.0.1.5, 9.0.1.5 FIPS, 9.2.0.7, and 10.1.0.4, and Application Server 1.0.2.2, 9.0.4.2, and 10.1.2.0.2, has unspecified impact and attack vectors, as identified by Oracle Vuln# JN01.. EPSS estimates a 5.03% chance of exploitation in the next 30 days.
Description
Unspecified vulnerability in the Java Net component of Oracle Database Server 8.1.7.4, 9.0.1.5, 9.0.1.5 FIPS, 9.2.0.7, and 10.1.0.4, and Application Server 1.0.2.2, 9.0.4.2, and 10.1.2.0.2, has unspecified impact and attack vectors, as identified by Oracle Vuln# JN01.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Application Server | 1.0.2.2 |
| Oracle | Application Server | 9.0.4.2 |
| Oracle | Application Server | 10.1.2.0.2 |
| Oracle | Database Server | 8.1.7.4 |
| Oracle | Database Server | 9.0.1.5 |
| Oracle | Database Server | 9.2.0.7 |
References
- http://secunia.com/advisories/18493Vendor Advisory
- http://secunia.com/advisories/18608Vendor Advisory
- http://www.kb.cert.org/vuls/id/545804US Government Resource
- http://secunia.com/advisories/18493Vendor Advisory
- http://secunia.com/advisories/18608Vendor Advisory
- http://www.kb.cert.org/vuls/id/545804US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-0285?
How severe is CVE-2006-0285?
How do I fix CVE-2006-0285?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2006
- CVE-2006-0279Multiple unspecified vulnerabilities in Oracle E-Business Su…
- CVE-2006-0280Unspecified vulnerability in Oracle PeopleSoft Enterprise Po…
- CVE-2006-0281Unspecified vulnerability in Oracle JD Edwards HTML Server 8…
- CVE-2006-0282Unspecified vulnerability in Oracle Database Server 8.1.7.4,…
- CVE-2006-0283Unspecified vulnerability in Oracle Database Server 10.1.0.4…
- CVE-2006-0284Multiple unspecified vulnerabilities in Oracle Application S…
- CVE-2006-0286Unspecified vulnerability in the Oracle HTTP Server componen…
- CVE-2006-0287Unspecified vulnerability in the Oracle HTTP Server componen…
- CVE-2006-0288Multiple unspecified vulnerabilities in the Oracle Reports D…
- CVE-2006-0289Multiple unspecified vulnerabilities in Oracle Application S…
- CVE-2006-0290Unspecified vulnerability in Oracle Database Server 9.2.0.7,…
- CVE-2006-0291Multiple unspecified vulnerabilities in Oracle Database Serv…
Are you affected by CVE-2006-0285?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
