CVE-2007-5511

Scores

EPSS

0.656medium65.6%
0%20%40%60%80%100%

Percentile: 65.6%

CVSS

6.5medium2.0
0246810

CVSS Score: 6.5/10

All CVSS Scores

CVSS 2.0
6.5

Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Description

SQL injection vulnerability in Workspace Manager for Oracle Database before OWM 10.2.0.4.1, OWM 10.1.0.8.0, and OWM 9.2.0.8.0 allows attackers to execute arbitrary SQL commands via the FINDRICSET procedure in the LT package. NOTE: this is probably covered by CVE-2007-5510, but there are insufficient details to be certain.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-89

Exploits

Exploit ID: 4570

Source: exploitdb

URL: https://www.exploit-db.com/exploits/4570

Exploit ID: 4571

Source: exploitdb

URL: https://www.exploit-db.com/exploits/4571

Exploit ID: 4572

Source: exploitdb

URL: https://www.exploit-db.com/exploits/4572

Vulnerable Software (1)

Type: Configuration

Vendor: *

Product: database_server

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:oracle:database_server:*:*:*:*:*:*:*:*",      "vulnerable": true    }  ],  "operator": "OR"}

Source: nvd

End of list