Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Oracle Database Number Of NVD 492 CRITICAL 13 HIGH 171 MEDIUM 245 LOW 63
URL https://www.oracle.com/database/
Explanation It is a commercial relational database management system (RDBMS) developed and marketed by Oracle (USA).
It was the first commercial database released in 1979.
It has users all over the world and has all the necessary functions for a relational database management system (RDBMS).

There are three support stages for Oracle enterprise Database.

Premier Support (standard support for five years from the time of product shipment)
Extended Support (3 years of extended support from the end of Premier Support)
Extended Support (3 years of extended support after Premier Support expires) ・Sustaining Support (support received for continued use of the product)

From Oracle Database 18c onwards, the "annual release" model has been adopted.
Updates and Revisions are released in January, April, July, and October.
In the case of version "18.0.1", 18 is the version, 0 is the update, and 1 is the revision.
Tag
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://www.oracle.com/technetwork/jp/database/enterprise-edition/downloads/index.html
2 https://support.oracle.com/knowledge/Oracle%20Database%20Products/2413744_1.html
3 https://support.oracle.com/knowledge/Oracle%20Cloud/2413744_1.html
4 https://www.oracle.com/jp/support/lifetime-support/
5 https://www.oracle.com/jp/database/technologies/oracle-database-software-downloads.html
6 http://otndnld.oracle.co.jp/ondemand/technight/19-1_CoreInstUpgr_DL_final.pdf

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
411 Oracle Database 19c 19.5 March 31, 2023 March 31, 2026 3 9 21 10
412 Oracle Database 12c Release 2 12.2.0.1 Nov. 20, 2020 8 13 24 12
413 Oracle Database 18c 18.0.0.0 June 15, 2018 Feb. 1, 2018 9 14 23 10
414 Oracle Database 12c Release 1 12.1.0.2 July 1, 2013 Aug. 31, 2016 6 28 72 23
415 Oracle Database 11g Release 2 11.2.0.4 Sept. 1, 2009 Jan. 31, 2015 Dec. 31, 2020 5 40 110 27
416 Oracle Database 11g Release 1 11.1.0.7 Sept. 1, 2007 Aug. 31, 2012 Aug. 31, 2015 0 37 114 23
417 Oracle Database 9.0c 9.0.4 1 47 18 3
418 Oracle Database 8.0c 8.0.6.3 0 10 2 2
419 Oracle Database 7.0c 7.0.64 0 3 0 1
420 Oracle Database 5.1c 5.1 0 2 1 1
421 Oracle Database 4.0c 4.0.8 0 2 5 2
422 Oracle Database 21.3c 21.3 0 0 6 5
423 Oracle Database 10.1c 10.1.0.5 1 83 75 16
424 Oracle Database 1.0c 1.0.2.2 0 2 3 2
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
411 -
10.0
HIGH Multiple unspecified vulnerabilities in Oracle Database 8.1.7.4, 9.0.1.5, 9.2.0.7, 10.1.0.5, and 10.2.0.2 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB06 in Export; (2) DB08, (3) DB… NVD-CWE-noinfo
CVE-2006-3702 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:8.1.7.4:*
cpe:2.3:a:oracle:database_s…
2018-10-19 01:49
2006-07-21
Show GitHub Exploit DB Packet Storm
412 -
9.0
HIGH Unspecified vulnerability in InterMedia for Oracle Database 9.0.1.5, 9.2.0.6, and 10.1.0.4 has unknown impact and attack vectors, aka oracle Vuln# DB07. NVD-CWE-noinfo
CVE-2006-3703 cpe:2.3:a:oracle:database_server:9.2.0.6:*
cpe:2.3:a:oracle:database_server:9.0.1.5:*
cpe:2.3:a:oracle:database_s…
2018-10-19 01:49
2006-07-21
Show GitHub Exploit DB Packet Storm
413 -
10.0
HIGH Unspecified vulnerability in the Oracle ODBC Driver for Oracle Database 10.1.0.4 has unknown impact and attack vectors, aka Oracle Vuln# 10.1.0.4. NVD-CWE-Other
CVE-2006-3704 cpe:2.3:a:oracle:database_server:10.1.0.4:* 2018-10-19 01:49
2006-07-21
Show GitHub Exploit DB Packet Storm
414 -
10.0
HIGH Multiple unspecified vulnerabilities in Oracle Database 10.1.0.5 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB21 for Statistics and (2) DB22 for Upgrade & Downgrade. NOTE: as of 20… NVD-CWE-noinfo
CVE-2006-3705 cpe:2.3:a:oracle:database_server:10.1.0.5:* 2018-10-19 01:49
2006-07-21
Show GitHub Exploit DB Packet Storm
415 -
10.0
HIGH Multiple unspecified vulnerabilities in Oracle Database 10.1.0.5 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB01 for Change Data Capture (CDC) component and (2) DB03 for Data Pump M… NVD-CWE-noinfo
CVE-2006-3698 cpe:2.3:a:oracle:database_server:10.1.0.5:* 2023-11-7 10:59
2006-07-21
Show GitHub Exploit DB Packet Storm
416 -
3.6
LOW Oracle Database Server 10g Release 2 allows local users to execute arbitrary SQL queries via a reference to a malicious package in the TYPE_NAME argument in the (1) GET_DOMAIN_INDEX_TABLES or (2) GET… NVD-CWE-Other
CVE-2006-2505 cpe:2.3:a:oracle:database_server:release_2:* 2018-10-19 01:40
2006-05-23
Show GitHub Exploit DB Packet Storm
417 -
10.0
HIGH Unspecified vulnerability in Oracle Database Server 9.2.0.6 has unknown impact and attack vectors in the Advanced Replication component, aka Vuln# DB02. NVD-CWE-Other
CVE-2006-1867 cpe:2.3:a:oracle:database_server:9.2.0.6:* 2018-10-19 01:36
2006-04-20
Show GitHub Exploit DB Packet Storm
418 -
7.5
HIGH Buffer overflow in the Advanced Replication component in Oracle Database Server 10.1.0.4 allows database users to execute arbitrary code via the VERIFY_LOG procedure of the DBMS_SNAPSHOT_UTL package,… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2006-1868 cpe:2.3:a:oracle:database_server:10.1.0.4:* 2018-10-19 01:36
2006-04-20
Show GitHub Exploit DB Packet Storm
419 -
10.0
HIGH Unspecified vulnerability in Oracle Database Server 8.1.7.4 and 9.0.1.5 has unknown impact and attack vectors in the Dictionary component, aka Vuln# DB04. NVD-CWE-Other
CVE-2006-1869 cpe:2.3:a:oracle:database_server:9.0.1.5:*
cpe:2.3:a:oracle:database_server:8.1.7.4:*
2018-10-19 01:36
2006-04-20
Show GitHub Exploit DB Packet Storm
420 -
9.0
HIGH Unspecified vulnerability in Oracle Database Server 8.1.7.4, 9.0.1.5, 9.2.0.7, 10.1.0.5, and 10.2.0.2 has unknown impact and attack vectors in the Export component, aka Vuln# DB05. NOTE: details are… NVD-CWE-noinfo
CVE-2006-1870 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:9.0.1.5:*
cpe:2.3:a:oracle:database_s…
2018-10-19 01:36
2006-04-20
Show GitHub Exploit DB Packet Storm