CVE-2007-5505
Last modified
CVE-2007-5505 is a vulnerability of currently unknown severity. Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 have unknown impact and remote attack vectors, related to (1) the Export component (DB02), (2) Oracle Text (DB04), (3) Oracle Text (DB05), (4) Spatial component (DB07), and (5) Advanced Security Option (DB19).. EPSS estimates a 2.66% chance of exploitation in the next 30 days.
Description
Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 have unknown impact and remote attack vectors, related to (1) the Export component (DB02), (2) Oracle Text (DB04), (3) Oracle Text (DB05), (4) Spatial component (DB07), and (5) Advanced Security Option (DB19).
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Database Server | 9.0.1.5 |
| Oracle | Database Server | 9.2.0.8 |
| Oracle | Database Server | 9.2.0.8dv |
| Oracle | Database Server | 10.1.0.5 |
| Oracle | Database Server | 10.2.0.3 |
References
- http://secunia.com/advisories/27251Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA07-290A.htmlUS Government Resource
- http://secunia.com/advisories/27251Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA07-290A.htmlUS Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-5505?
How severe is CVE-2007-5505?
How do I fix CVE-2007-5505?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-5499Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2007-5500The wait_task_stopped function in the Linux kernel before 2.…
- CVE-2007-5501The tcp_sacktag_write_queue function in net/ipv4/tcp_input.c…
- CVE-2007-5502The PRNG implementation for the OpenSSL FIPS Object Module 1…
- CVE-2007-5503Multiple integer overflows in Cairo before 1.4.12 might allo…
- CVE-2007-5504Multiple unspecified vulnerabilities in Oracle Database 9.0.…
- CVE-2007-5506The Core RDBMS component in Oracle Database 9.0.1.5+, 9.2.0.…
- CVE-2007-5507The GIOP service in TNS Listener in the Oracle Net Services …
- CVE-2007-5508Multiple SQL injection vulnerabilities in the CTXSYS Interme…
- CVE-2007-5509Unspecified vulnerability in the Spatial component in Oracle…
- CVE-2007-5510Multiple unspecified vulnerabilities in the Workspace Manage…
- CVE-2007-5511SQL injection vulnerability in Workspace Manager for Oracle …
Are you affected by CVE-2007-5505?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
