PoC Index

CVE-2009-1968

MEDIUM 4.3EPSS 40.1%

Unspecified vulnerability in the Secure Enterprise Search component in Oracle Database 10.1.8.3 allows remote attackers to affect integrity via unknown vectors. NOTE: the previous information was obtained from the July 2009 CPU. Oracle has not commented on claims from an established researcher that this is cross-site scripting (XSS) via the search_p_groups parameter in search/query/search.

CVSS v2.0
4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
EPSS
40.08% chance of exploitation in the next 30 days, 99th percentile
Published
2009-07-14
Updated
2024-08-07

ExploitDB entries (1)

References

Related