Back to Database
Status published
Medium
CVE-2005-1496
The DBMS_Scheduler in Oracle 10g allows remote attackers with CREATE...
Vulnerability Description
The DBMS_Scheduler in Oracle 10g allows remote attackers with CREATE JOB privileges to gain additional privileges by changing SESSION_USER to the SYS user.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2005-1496
Credits & Attribution
No credits recorded in the NVD database.
References
More from oracle
View All →CVE-2021-3314
Oracle GlassFish Server 3.1.2.18 and below allows /common/logViewer/logViewer.jsf XSS. A...
Medium
6.1
CVE-2020-9315
** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Oracle iPlanet Web...
High
7.5
CVE-2020-9314
** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Oracle iPlanet Web...
Medium
4.8
CVE-2019-2413
Vulnerability in the Oracle Reports Developer component of Oracle Fusion...
Medium
6.1
CVE-2018-3209
Vulnerability in the Java SE component of Oracle Java SE...
High
8.3
Affected Vendor
oracle
View all reports →Affected Software
application server, oracle10g
Vulnerable Versions:
10.1.0.2, 10.1.0.3, 10.1.0.3.1, enterprise_10.1.0.2, enterprise_10.1.0.3, enterprise_10.1.0.3.1, personal_10.1.0.2, personal_10.1.0.3, personal_10.1.0.3.1, standard_10.1.0.2, standard_10.1.0.3, standard_10.1.0.3.1
Timeline
Official Publish:
May 11th, 2005
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.