CVE-2006-7067
Last modified
CVE-2006-7067 is a vulnerability of currently unknown severity. Oracle 10g R2 and possibly other versions allows remote attackers to trigger internal errors, and possibly have other impacts, via an "alter session set events" command with invalid arguments. NOTE: this issue was originally disputed by a third party, but the dispute was retracted. EPSS estimates a 6.83% chance of exploitation in the next 30 days.
Description
Oracle 10g R2 and possibly other versions allows remote attackers to trigger internal errors, and possibly have other impacts, via an "alter session set events" command with invalid arguments. NOTE: this issue was originally disputed by a third party, but the dispute was retracted. NOTE: this issue was called an "integer overflow" in the original source, but this might be incorrect.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Oracle | Database Server | 10.2.1 | R2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-7067?
How severe is CVE-2006-7067?
How do I fix CVE-2006-7067?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2006
- CVE-2006-7061Scriptsez.net E-Dating System stores data files with predict…
- CVE-2006-7062calendar.php in Kamgaing Email System (kmail) 2.3 and earlie…
- CVE-2006-7063Directory traversal vulnerability in profile.php in TinyPHPf…
- CVE-2006-7064Cross-site scripting (XSS) vulnerability in forum/admin.php …
- CVE-2006-7065Microsoft Internet Explorer allows remote attackers to cause…
- CVE-2006-7066Microsoft Internet Explorer 6 on Windows XP SP2 allows remot…
- CVE-2006-7068PHP remote file inclusion vulnerability in CliServ Web Commu…
- CVE-2006-7069PHP remote file inclusion vulnerability in smarty_config.php…
- CVE-2006-7070Unrestricted file upload vulnerability in manager/media/ibro…
- CVE-2006-7071SQL injection vulnerability in classes/class_session.php in …
- CVE-2006-7072Cross-site scripting (XSS) vulnerability in GeoClassifieds E…
- CVE-2006-7073Cross-site scripting (XSS) vulnerability in Opentools Attach…
Are you affected by CVE-2006-7067?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
