Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Oracle Database Number Of NVD 492 CRITICAL 13 HIGH 171 MEDIUM 245 LOW 63
URL https://www.oracle.com/database/
Explanation It is a commercial relational database management system (RDBMS) developed and marketed by Oracle (USA).
It was the first commercial database released in 1979.
It has users all over the world and has all the necessary functions for a relational database management system (RDBMS).

There are three support stages for Oracle enterprise Database.

Premier Support (standard support for five years from the time of product shipment)
Extended Support (3 years of extended support from the end of Premier Support)
Extended Support (3 years of extended support after Premier Support expires) ・Sustaining Support (support received for continued use of the product)

From Oracle Database 18c onwards, the "annual release" model has been adopted.
Updates and Revisions are released in January, April, July, and October.
In the case of version "18.0.1", 18 is the version, 0 is the update, and 1 is the revision.
Tag
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://www.oracle.com/technetwork/jp/database/enterprise-edition/downloads/index.html
2 https://support.oracle.com/knowledge/Oracle%20Database%20Products/2413744_1.html
3 https://support.oracle.com/knowledge/Oracle%20Cloud/2413744_1.html
4 https://www.oracle.com/jp/support/lifetime-support/
5 https://www.oracle.com/jp/database/technologies/oracle-database-software-downloads.html
6 http://otndnld.oracle.co.jp/ondemand/technight/19-1_CoreInstUpgr_DL_final.pdf

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
421 Oracle Database 19c 19.5 March 31, 2023 March 31, 2026 3 9 21 10
422 Oracle Database 12c Release 2 12.2.0.1 Nov. 20, 2020 8 13 24 12
423 Oracle Database 18c 18.0.0.0 June 15, 2018 Feb. 1, 2018 9 14 23 10
424 Oracle Database 12c Release 1 12.1.0.2 July 1, 2013 Aug. 31, 2016 6 28 72 23
425 Oracle Database 11g Release 2 11.2.0.4 Sept. 1, 2009 Jan. 31, 2015 Dec. 31, 2020 5 40 110 27
426 Oracle Database 11g Release 1 11.1.0.7 Sept. 1, 2007 Aug. 31, 2012 Aug. 31, 2015 0 37 114 23
427 Oracle Database 9.0c 9.0.4 1 47 18 3
428 Oracle Database 8.0c 8.0.6.3 0 10 2 2
429 Oracle Database 7.0c 7.0.64 0 3 0 1
430 Oracle Database 5.1c 5.1 0 2 1 1
431 Oracle Database 4.0c 4.0.8 0 2 5 2
432 Oracle Database 21.3c 21.3 0 0 6 5
433 Oracle Database 10.1c 10.1.0.5 1 83 75 16
434 Oracle Database 1.0c 1.0.2.2 0 2 3 2
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
421 -
6.5
MEDIUM SQL injection vulnerability in Oracle Database Server 9.2.0.7 and 10.1.0.5 allows remote attackers to execute arbitrary SQL commands via the DELETE_FROM_TABLE function in the DBMS_LOGMNR_SESSION (Log… CWE-89
SQL Injection
CVE-2006-1871 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:10.1.0.5:*
2018-10-19 01:37
2006-04-20
Show GitHub Exploit DB Packet Storm
422 -
9.7
HIGH Multiple unspecified vulnerabilities in Oracle Database Server 8.1.7.4, 9.0.1.5, 9.2.0.7, 10.1.0.5, and other versions have unknown impact and attack vectors in the (1) Advanced Replication component… NVD-CWE-noinfo
CVE-2006-1866 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:9.0.1.5:*
cpe:2.3:a:oracle:database_s…
2018-10-19 01:36
2006-04-20
Show GitHub Exploit DB Packet Storm
423 -
7.5
HIGH Unspecified vulnerability in Oracle Database Server 9.0.1.5 and 9.2.0.7 has unknown impact and attack vectors in the Oracle Enterprise Manager Intelligent Agent component, aka Vuln# DB07. NVD-CWE-Other
CVE-2006-1872 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:9.0.1.5:*
2018-10-19 01:37
2006-04-20
Show GitHub Exploit DB Packet Storm
424 -
9.0
HIGH Unspecified vulnerability in Oracle Database Server 9.2.0.7, 10.1.0.4, and 10.2.0.1 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB08. NVD-CWE-noinfo
CVE-2006-1873 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:10.2.0.1:*
cpe:2.3:a:oracle:database_…
2018-10-19 01:37
2006-04-20
Show GitHub Exploit DB Packet Storm
425 -
7.5
HIGH Unspecified vulnerability in Oracle Database Server 8.1.7.4, 9.0.1.5, and 9.2.0.6 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB09. NOTE: Oracle has not disputed… NVD-CWE-noinfo
CVE-2006-1874 cpe:2.3:a:oracle:database_server:9.2.0.6:*
cpe:2.3:a:oracle:database_server:9.0.1.5:*
cpe:2.3:a:oracle:database_s…
2018-10-19 01:37
2006-04-20
Show GitHub Exploit DB Packet Storm
426 -
10.0
HIGH Unspecified vulnerability in Oracle Database Server 9.0.1.5, 9.2.0.7, and 10.1.0.5 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB11. NOTE: Oracle has not dispute… NVD-CWE-noinfo
CVE-2006-1875 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:9.0.1.5:*
cpe:2.3:a:oracle:database_s…
2018-10-19 01:37
2006-04-20
Show GitHub Exploit DB Packet Storm
427 -
9.0
HIGH Unspecified vulnerability in Oracle Database Server 9.2.0.7 and 10.1.0.4 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB12. NOTE: details are unavailable from Ora… NVD-CWE-noinfo
CVE-2006-1876 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:10.1.0.4:*
2018-10-19 01:37
2006-04-20
Show GitHub Exploit DB Packet Storm
428 -
7.2
HIGH Unspecified vulnerability in Oracle Database Server 8.1.7.4, 9.0.1.5, and 9.2.0.7 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB13. NVD-CWE-noinfo
CVE-2006-1877 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:9.0.1.5:*
cpe:2.3:a:oracle:database_s…
2018-10-19 01:37
2006-04-20
Show GitHub Exploit DB Packet Storm
429 -
10.0
HIGH Unspecified vulnerability in the Oracle Thesaurus Management System component in Oracle E-Business Suite and OPA 4.5.2 Applications has unknown impact and attack vectors, aka Vuln# OPA01. NVD-CWE-Other
CVE-2006-1884 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:9.2.0.6:*
cpe:2.3:a:oracle:database_s…
2018-10-19 01:37
2006-04-20
Show GitHub Exploit DB Packet Storm
430 -
7.5
HIGH Unspecified vulnerability in the Net Listener component of Oracle Database server 8.1.7.4, 9.0.1.5, 9.0.1.5 FIPS, and 9.2.0.7 has unspecified impact and attack vectors, as identified by Oracle Vuln# … NVD-CWE-Other
CVE-2006-0552 cpe:2.3:a:oracle:database_server:8.1.7.4:*
cpe:2.3:a:oracle:database_server:8.0.6:*
cpe:2.3:a:oracle:database_ser…
2017-07-20 10:29
2006-02-4
Show GitHub Exploit DB Packet Storm