SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2009-1972

Unspecified vulnerability in the Auditing component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect integrity, related to DBMS_SYS_SQL and DBMS_SQL.

LOW 2.1EPSS 1.65%

Does this matter?

Lower severity and a low EPSS score (1.65%). Track it; it rarely justifies an emergency change on its own.

Description

Unspecified vulnerability in the Auditing component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect integrity, related to DBMS_SYS_SQL and DBMS_SQL.

CVSS 2.0
2.1 LOWAV:N/AC:H/Au:S/C:N/I:P/A:N
EPSS
1.65% probability · 75th percentile
CISA KEV
Not listed
Affected
oracle/database server
Source
secalert_us@oracle.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.