Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Oracle Database Number Of NVD 492 CRITICAL 13 HIGH 171 MEDIUM 245 LOW 63
URL https://www.oracle.com/database/
Explanation It is a commercial relational database management system (RDBMS) developed and marketed by Oracle (USA).
It was the first commercial database released in 1979.
It has users all over the world and has all the necessary functions for a relational database management system (RDBMS).

There are three support stages for Oracle enterprise Database.

Premier Support (standard support for five years from the time of product shipment)
Extended Support (3 years of extended support from the end of Premier Support)
Extended Support (3 years of extended support after Premier Support expires) ・Sustaining Support (support received for continued use of the product)

From Oracle Database 18c onwards, the "annual release" model has been adopted.
Updates and Revisions are released in January, April, July, and October.
In the case of version "18.0.1", 18 is the version, 0 is the update, and 1 is the revision.
Tag
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://www.oracle.com/technetwork/jp/database/enterprise-edition/downloads/index.html
2 https://support.oracle.com/knowledge/Oracle%20Database%20Products/2413744_1.html
3 https://support.oracle.com/knowledge/Oracle%20Cloud/2413744_1.html
4 https://www.oracle.com/jp/support/lifetime-support/
5 https://www.oracle.com/jp/database/technologies/oracle-database-software-downloads.html
6 http://otndnld.oracle.co.jp/ondemand/technight/19-1_CoreInstUpgr_DL_final.pdf

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
121 Oracle Database 19c 19.5 March 31, 2023 March 31, 2026 3 9 21 10
122 Oracle Database 12c Release 2 12.2.0.1 Nov. 20, 2020 8 13 24 12
123 Oracle Database 18c 18.0.0.0 June 15, 2018 Feb. 1, 2018 9 14 23 10
124 Oracle Database 12c Release 1 12.1.0.2 July 1, 2013 Aug. 31, 2016 6 28 72 23
125 Oracle Database 11g Release 2 11.2.0.4 Sept. 1, 2009 Jan. 31, 2015 Dec. 31, 2020 5 40 110 27
126 Oracle Database 11g Release 1 11.1.0.7 Sept. 1, 2007 Aug. 31, 2012 Aug. 31, 2015 0 37 114 23
127 Oracle Database 9.0c 9.0.4 1 47 18 3
128 Oracle Database 8.0c 8.0.6.3 0 10 2 2
129 Oracle Database 7.0c 7.0.64 0 3 0 1
130 Oracle Database 5.1c 5.1 0 2 1 1
131 Oracle Database 4.0c 4.0.8 0 2 5 2
132 Oracle Database 21.3c 21.3 0 0 6 5
133 Oracle Database 10.1c 10.1.0.5 1 83 75 16
134 Oracle Database 1.0c 1.0.2.2 0 2 3 2
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
121 -
4.9
MEDIUM Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1 allows remote authenticated users to affect integrity and availability via u… NVD-CWE-noinfo
CVE-2015-0371 cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database_server:11.2.0.4:*
cpe:2.3:a:oracle:database…
2024-11-21 11:22
2015-01-22
Show GitHub Exploit DB Packet Storm
122 -
3.5
LOW Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1 allows remote authenticated users to affect integrity via unknown vectors, a… NVD-CWE-noinfo
CVE-2015-0370 cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database_server:11.2.0.4:*
cpe:2.3:a:oracle:database…
2024-11-21 11:22
2015-01-22
Show GitHub Exploit DB Packet Storm
123 -
6.5
MEDIUM Unspecified vulnerability in the Workspace Manager component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1 allows remote authenticated users to affect confidentiality, integrit… NVD-CWE-noinfo
CVE-2014-6578 cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database_server:11.2.0.4:*
cpe:2.3:a:oracle:database…
2024-11-21 11:14
2015-01-22
Show GitHub Exploit DB Packet Storm
124 -
6.8
MEDIUM Unspecified vulnerability in the XML Developer's Kit for C component in Oracle Database Server 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality v… NVD-CWE-noinfo
CVE-2014-6577 cpe:2.3:a:oracle:database_server:12.1.0.2:*
cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database…
2024-11-21 11:14
2015-01-22
Show GitHub Exploit DB Packet Storm
125 -
9.0
HIGH Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integ… NVD-CWE-noinfo
CVE-2014-6567 cpe:2.3:a:oracle:database_server:12.1.0.2:*
cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database…
2024-11-21 11:14
2015-01-22
Show GitHub Exploit DB Packet Storm
126 -
6.3
MEDIUM Unspecified vulnerability in the Recovery component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2, when running on Windows, allows remote authenticated users to affec… NVD-CWE-noinfo
CVE-2014-6541 cpe:2.3:a:oracle:database_server:12.1.0.2:*
cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database…
2024-11-21 11:14
2015-01-22
Show GitHub Exploit DB Packet Storm
127 -
4.0
MEDIUM Unspecified vulnerability in the PL/SQL component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1 allows remote authenticated users to affect confidentiality via unknown vectors. NVD-CWE-noinfo
CVE-2014-6514 cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database_server:11.2.0.4:*
cpe:2.3:a:oracle:database…
2024-11-21 11:14
2015-01-21
Show GitHub Exploit DB Packet Storm
128 -
6.8
MEDIUM Unspecified vulnerability in the JPublisher component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via un… CWE-200
Information Exposure
CVE-2014-6477 cpe:2.3:a:oracle:database_server:12.1.0.2:*
cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database…
2024-11-21 11:14
2014-11-24
Show GitHub Exploit DB Packet Storm
129 -
4.0
MEDIUM Unspecified vulnerability in the Java VM component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unkno… NVD-CWE-noinfo
CVE-2014-6563 cpe:2.3:a:oracle:database_server:12.1.0.2:*
cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database…
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
130 -
9.0
HIGH Unspecified vulnerability in the Java VM component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrit… NVD-CWE-noinfo
CVE-2014-6560 cpe:2.3:a:oracle:database_server:12.1.0.2:*
cpe:2.3:a:oracle:database_server:12.1.0.1:*
cpe:2.3:a:oracle:database…
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm