VulnerabilityModified
CVE-2010-0870
Unspecified vulnerability in the Change Data Capture component in Oracle Database 9.2.0.8 and 9.2.0.8DV allows remote authenticated users to affect confidentiality and integrity, related to SYS.DBMS_CDC_PUBLISH.
LOW 3.6EPSS 12.6%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 12.6%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
Unspecified vulnerability in the Change Data Capture component in Oracle Database 9.2.0.8 and 9.2.0.8DV allows remote authenticated users to affect confidentiality and integrity, related to SYS.DBMS_CDC_PUBLISH.
- CVSS 2.0
- 3.6 LOWAV:N/AC:H/Au:S/C:P/I:P/A:N
- EPSS
- 12.55% probability · 96th percentile
- CISA KEV
- Not listed
- Affected
- oracle/database server
- Source
- secalert_us@oracle.com
References
- http://secunia.com/advisories/39438
- http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.html
- http://www.us-cert.gov/cas/techalerts/TA10-103B.htmlUS Government Resource
- http://secunia.com/advisories/39438
- http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.html
- http://www.us-cert.gov/cas/techalerts/TA10-103B.htmlUS Government Resource
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.