LOW · 2.1

CVE-2006-1705

Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table to insert, update, or delete data by creating a crafted view then performing the operations on that vie...

Vulnerability Description

Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table to insert, update, or delete data by creating a crafted view then performing the operations on that view.

CVSS Score

2.1

LOW

AV:L/AC:L/Au:N/C:N/I:P/A:N
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
OracleOracle10Genterprise_10.1.0.2
OracleOracle9Ienterprise_9.2.0

References

FAQ

What is CVE-2006-1705?

CVE-2006-1705 is a vulnerability with a CVSS score of 2.1 (LOW). Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table to insert, update, or delete data by creating a crafted view then performing the operations on that vie...

How severe is CVE-2006-1705?

CVE-2006-1705 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-1705?

Check the references section above for vendor advisories and patch information. Affected products include: Oracle Oracle10G, Oracle Oracle9I.