Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Oracle Database Number Of NVD 492 CRITICAL 13 HIGH 171 MEDIUM 245 LOW 63
URL https://www.oracle.com/database/
Explanation It is a commercial relational database management system (RDBMS) developed and marketed by Oracle (USA).
It was the first commercial database released in 1979.
It has users all over the world and has all the necessary functions for a relational database management system (RDBMS).

There are three support stages for Oracle enterprise Database.

Premier Support (standard support for five years from the time of product shipment)
Extended Support (3 years of extended support from the end of Premier Support)
Extended Support (3 years of extended support after Premier Support expires) ・Sustaining Support (support received for continued use of the product)

From Oracle Database 18c onwards, the "annual release" model has been adopted.
Updates and Revisions are released in January, April, July, and October.
In the case of version "18.0.1", 18 is the version, 0 is the update, and 1 is the revision.
Tag
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://www.oracle.com/technetwork/jp/database/enterprise-edition/downloads/index.html
2 https://support.oracle.com/knowledge/Oracle%20Database%20Products/2413744_1.html
3 https://support.oracle.com/knowledge/Oracle%20Cloud/2413744_1.html
4 https://www.oracle.com/jp/support/lifetime-support/
5 https://www.oracle.com/jp/database/technologies/oracle-database-software-downloads.html
6 http://otndnld.oracle.co.jp/ondemand/technight/19-1_CoreInstUpgr_DL_final.pdf

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
451 Oracle Database 19c 19.5 March 31, 2023 March 31, 2026 3 9 21 10
452 Oracle Database 12c Release 2 12.2.0.1 Nov. 20, 2020 8 13 24 12
453 Oracle Database 18c 18.0.0.0 June 15, 2018 Feb. 1, 2018 9 14 23 10
454 Oracle Database 12c Release 1 12.1.0.2 July 1, 2013 Aug. 31, 2016 6 28 72 23
455 Oracle Database 11g Release 2 11.2.0.4 Sept. 1, 2009 Jan. 31, 2015 Dec. 31, 2020 5 40 110 27
456 Oracle Database 11g Release 1 11.1.0.7 Sept. 1, 2007 Aug. 31, 2012 Aug. 31, 2015 0 37 114 23
457 Oracle Database 9.0c 9.0.4 1 47 18 3
458 Oracle Database 8.0c 8.0.6.3 0 10 2 2
459 Oracle Database 7.0c 7.0.64 0 3 0 1
460 Oracle Database 5.1c 5.1 0 2 1 1
461 Oracle Database 4.0c 4.0.8 0 2 5 2
462 Oracle Database 21.3c 21.3 0 0 6 5
463 Oracle Database 10.1c 10.1.0.5 1 83 75 16
464 Oracle Database 1.0c 1.0.2.2 0 2 3 2
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
451 -
10.0
HIGH Unspecified vulnerability in the Java Net component of Oracle Database Server 8.1.7.4, 9.0.1.5, 9.0.1.5 FIPS, 9.2.0.7, and 10.1.0.4, and Application Server 1.0.2.2, 9.0.4.2, and 10.1.2.0.2, has unspe… NVD-CWE-noinfo
CVE-2006-0285 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:9.0.1.5:*
cpe:2.3:a:oracle:database_s…
2017-07-20 10:29
2006-01-18
Show GitHub Exploit DB Packet Storm
452 -
10.0
HIGH Unspecified vulnerability in the Oracle HTTP Server component of Oracle Database Server 9.0.1.5, 9.0.1.5 FIPS, 9.2.0.7, and 10.1.0.5, and Application Server 1.0.2.2, 9.0.4.2, and 10.1.2.0.2, has unsp… NVD-CWE-noinfo
CVE-2006-0286 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:9.0.1.5:*
cpe:2.3:a:oracle:database_s…
2017-07-20 10:29
2006-01-18
Show GitHub Exploit DB Packet Storm
453 -
10.0
HIGH Unspecified vulnerability in the Oracle HTTP Server component of Oracle Database Server 10.1.0.5 and Application Server 10.1.2.0.2 has unspecified impact and attack vectors, as identified by Oracle V… NVD-CWE-noinfo
CVE-2006-0287 cpe:2.3:a:oracle:database_server:10.1.0.5:* 2017-07-20 10:29
2006-01-18
Show GitHub Exploit DB Packet Storm
454 -
10.0
HIGH Unspecified vulnerability in Oracle Database Server 9.2.0.7, Application Server 9.0.4.2 and 10.1.2.1, Collaboration Suite Release 2, version 9.0.4.2 (Oracle9i), and E-Business Suite and Applications … NVD-CWE-noinfo
CVE-2006-0290 cpe:2.3:a:oracle:database_server:9.2.0.7:* 2017-07-20 10:29
2006-01-18
Show GitHub Exploit DB Packet Storm
455 -
10.0
HIGH Multiple unspecified vulnerabilities in Oracle Database Server 10.2.0.1, Application Server 9.0.4.2 and 10.1.2.1, Collaboration Suite Release 2, version 9.0.4.2 (Oracle9i), and E-Business Suite and A… NVD-CWE-noinfo
CVE-2006-0291 cpe:2.3:a:oracle:database_server:10.2.0.1:* 2017-07-20 10:29
2006-01-18
Show GitHub Exploit DB Packet Storm
456 -
7.5
HIGH Oracle Databases running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication by supplying a valid username. NVD-CWE-Other
CVE-2005-3641 cpe:2.3:a:oracle:database_server:8.1.7:*
cpe:2.3:a:oracle:database_server:8.1.7.4:*
cpe:2.3:a:oracle:database_ser…
2008-09-6 05:54
2005-11-17
Show GitHub Exploit DB Packet Storm
457 -
10.0
HIGH Multiple unspecified vulnerabilities in HTTP Server in Oracle Database Server 8i up to 10.1.0.4.2 and Application Server 1.0.2.2 up to 10.1.2.0 have unknown impact and attack vectors, aka Oracle Vuln… NVD-CWE-Other
CVE-2005-3445 cpe:2.3:a:oracle:database_server:9.2.0.7:*
cpe:2.3:a:oracle:database_server:9.2.0.6:*
cpe:2.3:a:oracle:database_s…
2012-10-23 10:51
2005-11-2
Show GitHub Exploit DB Packet Storm
458 -
10.0
HIGH Unspecified vulnerability in Internet Directory in Oracle Database Server 9i up to 9.2.0.6 and Application Server 9.0.2.3 up to 10.1.2.0 has unknown impact and attack vectors, aka Oracle Vuln# DB32 a… NVD-CWE-Other
CVE-2005-3446 cpe:2.3:a:oracle:database_server:9.2.0.6:*
cpe:2.3:a:oracle:database_server:9.2.0.5:*
2012-10-23 10:51
2005-11-2
Show GitHub Exploit DB Packet Storm
459 -
10.0
HIGH Unspecified vulnerability in the PL/SQL component in Oracle Database Server 9i up to 10.1.0.4 has unknown impact and attack vectors, aka Oracle Vuln# DB01. NVD-CWE-Other
CVE-2005-3437 cpe:2.3:a:oracle:database_server:10.1.0.4:*
cpe:2.3:a:oracle:database_server:10.1.0.3:*
2012-10-23 10:51
2005-11-2
Show GitHub Exploit DB Packet Storm
460 -
10.0
HIGH Multiple unspecified vulnerabilities in Oracle Database Server 9i up to 10.1.0.4.2 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB04 in Change Data Capture; (2) DB06 in Data Guard Log… NVD-CWE-Other
CVE-2005-3438 cpe:2.3:a:oracle:database_server:*:* 10.1.0.4.2 2012-10-23 10:51
2005-11-2
Show GitHub Exploit DB Packet Storm