CVE-2005-1178
Published May 2, 2005
Last updated 7 years ago
Overview
- Description
- SQL injection vulnerability in Oracle Forms 10g allows remote attackers to execute arbitrary SQL commands via the Query/Where feature.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:oracle:forms:3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C8F7AD5F-99F2-4549-9407-4F077B2D6DA3" }, { "criteria": "cpe:2.3:a:oracle:forms:4.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1B720808-BCFF-4917-82E3-2F7B11355406" }, { "criteria": "cpe:2.3:a:oracle:forms:5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8119C936-B996-42F1-9141-D3DECAB1949E" }, { "criteria": "cpe:2.3:a:oracle:forms:6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38D1AB63-14C5-4343-962B-BC8FC03B412A" }, { "criteria": "cpe:2.3:a:oracle:forms:6i:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D38985A2-F5F6-4157-92C0-CE80B7F37013" }, { "criteria": "cpe:2.3:a:oracle:forms:9i:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "75E934ED-92DE-47C3-94C4-6714A32FC32A" }, { "criteria": "cpe:2.3:a:oracle:forms:10g:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "53D0E1F5-89E9-4C1E-B20A-6EF175D8AE70" } ], "operator": "OR" } ] } ]