 |
|
|
Family: Databases --> Category: infos
Oracle 10g DBMS_SCHEDULER Privilege Escalation Vulnerability Vulnerability Scan
Vulnerability Scan Summary Checks for DBMS_SCHEDULER privilege escalation vulnerability in Oracle 10g
Detailed Explanation for this Vulnerability Test
Synopsis :
The remote database server is affected by a privilege escalation
issue.
Description :
The remote host is running a version of Oracle 10g that, according to
its version number, permits a user with CREATE job rights to
switch the session_user to SYS, which could allow privilege
escalation.
See also :
http://www.nessus.org/u?94ef874d
Solution :
Apply the 10.0.1.4 patch set for Oracle 10g.
Risk Factor :
Low / CVSS Base Score : 1
(AV:R/AC:L/Au:R/C:N/A:N/I:P/B:N)
Click HERE for more information and discussions on this network vulnerability scan.
|
|
|
|
|