Vulnerability Description
Unspecified vulnerability in the Database Control component in EM Console in Oracle Database Server 10.1.0.5 and 10.2.0.3, Oracle Fusion Middleware 10.1.2.3 and 10.1.4.3, and Enterprise Manager Grid Control allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Database Server | 10.1.0.5 |
| Oracle | Fusion Middleware | 10.1.2.3 |
| Oracle | Enterprise Manager Grid Control | All versions |
References
- http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html
- http://www.us-cert.gov/cas/techalerts/TA10-287A.htmlUS Government Resource
- http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html
- http://www.us-cert.gov/cas/techalerts/TA10-287A.htmlUS Government Resource
FAQ
What is CVE-2010-2390?
CVE-2010-2390 is a vulnerability with a CVSS score of 7.5 (HIGH). Unspecified vulnerability in the Database Control component in EM Console in Oracle Database Server 10.1.0.5 and 10.2.0.3, Oracle Fusion Middleware 10.1.2.3 and 10.1.4.3, and Enterprise Manager Grid C...
How severe is CVE-2010-2390?
CVE-2010-2390 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-2390?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Database Server, Oracle Fusion Middleware, Oracle Enterprise Manager Grid Control.