Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Oracle Database Number Of NVD 492 CRITICAL 13 HIGH 171 MEDIUM 245 LOW 63
URL https://www.oracle.com/database/
Explanation It is a commercial relational database management system (RDBMS) developed and marketed by Oracle (USA).
It was the first commercial database released in 1979.
It has users all over the world and has all the necessary functions for a relational database management system (RDBMS).

There are three support stages for Oracle enterprise Database.

Premier Support (standard support for five years from the time of product shipment)
Extended Support (3 years of extended support from the end of Premier Support)
Extended Support (3 years of extended support after Premier Support expires) ・Sustaining Support (support received for continued use of the product)

From Oracle Database 18c onwards, the "annual release" model has been adopted.
Updates and Revisions are released in January, April, July, and October.
In the case of version "18.0.1", 18 is the version, 0 is the update, and 1 is the revision.
Tag
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://www.oracle.com/technetwork/jp/database/enterprise-edition/downloads/index.html
2 https://support.oracle.com/knowledge/Oracle%20Database%20Products/2413744_1.html
3 https://support.oracle.com/knowledge/Oracle%20Cloud/2413744_1.html
4 https://www.oracle.com/jp/support/lifetime-support/
5 https://www.oracle.com/jp/database/technologies/oracle-database-software-downloads.html
6 http://otndnld.oracle.co.jp/ondemand/technight/19-1_CoreInstUpgr_DL_final.pdf

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
181 Oracle Database 19c 19.5 March 31, 2023 March 31, 2026 3 9 21 10
182 Oracle Database 12c Release 2 12.2.0.1 Nov. 20, 2020 8 13 24 12
183 Oracle Database 18c 18.0.0.0 June 15, 2018 Feb. 1, 2018 9 14 23 10
184 Oracle Database 12c Release 1 12.1.0.2 July 1, 2013 Aug. 31, 2016 6 28 72 23
185 Oracle Database 11g Release 2 11.2.0.4 Sept. 1, 2009 Jan. 31, 2015 Dec. 31, 2020 5 40 110 27
186 Oracle Database 11g Release 1 11.1.0.7 Sept. 1, 2007 Aug. 31, 2012 Aug. 31, 2015 0 37 114 23
187 Oracle Database 9.0c 9.0.4 1 47 18 3
188 Oracle Database 8.0c 8.0.6.3 0 10 2 2
189 Oracle Database 7.0c 7.0.64 0 3 0 1
190 Oracle Database 5.1c 5.1 0 2 1 1
191 Oracle Database 4.0c 4.0.8 0 2 5 2
192 Oracle Database 21.3c 21.3 0 0 6 5
193 Oracle Database 10.1c 10.1.0.5 1 83 75 16
194 Oracle Database 1.0c 1.0.2.2 0 2 3 2
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
181 -
3.3
LOW Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3, when running on Unix and Linux platforms, allows local users to a… NVD-CWE-noinfo
CVE-2012-3151 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:40
2012-10-17
Show GitHub Exploit DB Packet Storm
182 -
2.1
LOW Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to affect integrity vi… NVD-CWE-noinfo
CVE-2012-3146 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:40
2012-10-17
Show GitHub Exploit DB Packet Storm
183 -
6.5
MEDIUM Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to affect confidentiality, integrity, and availabili… NVD-CWE-noinfo
CVE-2012-1751 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:37
2012-10-17
Show GitHub Exploit DB Packet Storm
184 -
6.4
MEDIUM The authentication protocol in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote attackers to obtain the session key and salt for arbitrary users, wh… CWE-287
Improper Authentication
CVE-2012-3137 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:40
2012-09-22
Show GitHub Exploit DB Packet Storm
185 -
6.5
MEDIUM SQL injection vulnerability in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to execute arbitrary SQL commands via vectors in… CWE-89
SQL Injection
CVE-2012-3132 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:40
2012-08-11
Show GitHub Exploit DB Packet Storm
186 -
4.0
MEDIUM Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to affect availability via unknown vectors. NVD-CWE-noinfo
CVE-2012-3134 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:40
2012-07-18
Show GitHub Exploit DB Packet Storm
187 -
5.0
MEDIUM Unspecified vulnerability in the Network Layer component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3, when running on Windows, allows remote attackers to … NVD-CWE-noinfo
CVE-2012-1747 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:37
2012-07-18
Show GitHub Exploit DB Packet Storm
188 -
5.0
MEDIUM Unspecified vulnerability in the Network Layer component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3, when running on Windows, allows remote attackers to … NVD-CWE-noinfo
CVE-2012-1746 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:37
2012-07-18
Show GitHub Exploit DB Packet Storm
189 -
5.0
MEDIUM Unspecified vulnerability in the Network Layer component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote attackers to affect availability via un… NVD-CWE-noinfo
CVE-2012-1745 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:37
2012-07-18
Show GitHub Exploit DB Packet Storm
190 -
6.8
MEDIUM Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Database Server 11.1.0.7, 11.2.0.2, and 11.2.0.3, and Enterprise Manager Grid Control EM Base Platform 10.2… NVD-CWE-noinfo
CVE-2012-1737 cpe:2.3:a:oracle:database_server:11.2.0.3:*
cpe:2.3:a:oracle:database_server:11.2.0.2:*
cpe:2.3:a:oracle:database…
2024-11-21 10:37
2012-07-18
Show GitHub Exploit DB Packet Storm