Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Oracle Database Number Of NVD 492 CRITICAL 13 HIGH 171 MEDIUM 245 LOW 63
URL https://www.oracle.com/database/
Explanation It is a commercial relational database management system (RDBMS) developed and marketed by Oracle (USA).
It was the first commercial database released in 1979.
It has users all over the world and has all the necessary functions for a relational database management system (RDBMS).

There are three support stages for Oracle enterprise Database.

Premier Support (standard support for five years from the time of product shipment)
Extended Support (3 years of extended support from the end of Premier Support)
Extended Support (3 years of extended support after Premier Support expires) ・Sustaining Support (support received for continued use of the product)

From Oracle Database 18c onwards, the "annual release" model has been adopted.
Updates and Revisions are released in January, April, July, and October.
In the case of version "18.0.1", 18 is the version, 0 is the update, and 1 is the revision.
Tag
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://www.oracle.com/technetwork/jp/database/enterprise-edition/downloads/index.html
2 https://support.oracle.com/knowledge/Oracle%20Database%20Products/2413744_1.html
3 https://support.oracle.com/knowledge/Oracle%20Cloud/2413744_1.html
4 https://www.oracle.com/jp/support/lifetime-support/
5 https://www.oracle.com/jp/database/technologies/oracle-database-software-downloads.html
6 http://otndnld.oracle.co.jp/ondemand/technight/19-1_CoreInstUpgr_DL_final.pdf

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
261 Oracle Database 19c 19.5 March 31, 2023 March 31, 2026 3 9 21 10
262 Oracle Database 12c Release 2 12.2.0.1 Nov. 20, 2020 8 13 24 12
263 Oracle Database 18c 18.0.0.0 June 15, 2018 Feb. 1, 2018 9 14 23 10
264 Oracle Database 12c Release 1 12.1.0.2 July 1, 2013 Aug. 31, 2016 6 28 72 23
265 Oracle Database 11g Release 2 11.2.0.4 Sept. 1, 2009 Jan. 31, 2015 Dec. 31, 2020 5 40 110 27
266 Oracle Database 11g Release 1 11.1.0.7 Sept. 1, 2007 Aug. 31, 2012 Aug. 31, 2015 0 37 114 23
267 Oracle Database 9.0c 9.0.4 1 47 18 3
268 Oracle Database 8.0c 8.0.6.3 0 10 2 2
269 Oracle Database 7.0c 7.0.64 0 3 0 1
270 Oracle Database 5.1c 5.1 0 2 1 1
271 Oracle Database 4.0c 4.0.8 0 2 5 2
272 Oracle Database 21.3c 21.3 0 0 6 5
273 Oracle Database 10.1c 10.1.0.5 1 83 75 16
274 Oracle Database 1.0c 1.0.2.2 0 2 3 2
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
261 -
7.5
HIGH Unspecified vulnerability in the Database Control component in EM Console in Oracle Database Server 10.1.0.5 and 10.2.0.3, Oracle Fusion Middleware 10.1.2.3 and 10.1.4.3, and Enterprise Manager Grid … NVD-CWE-noinfo
CVE-2010-2390 cpe:2.3:a:oracle:database_server:10.2.0.3:*
cpe:2.3:a:oracle:database_server:10.1.0.5:*
2024-11-21 10:16
2010-10-14
Show GitHub Exploit DB Packet Storm
262 -
1.0
LOW Unspecified vulnerability in the Perl component in Oracle Database Server 11.2.0.1, 11.1.0.7, 10.2.0.3, 10.2.0.4, and 10.1.0.5; and Fusion Middleware 11.1.1.1.0 and 11.1.1.2.0; allows local users to … NVD-CWE-noinfo
CVE-2010-2389 cpe:2.3:a:oracle:database_server:11.2.0.1:*
cpe:2.3:a:oracle:database_server:11.1.0.7:*
cpe:2.3:a:oracle:database…
2024-11-21 10:16
2010-10-14
Show GitHub Exploit DB Packet Storm
263 -
7.8
HIGH Unspecified vulnerability in the Listener component in Oracle Database Server 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, 11.1.0.7, and 11.2.0.1 allows remote attackers to affect availability via unknown… NVD-CWE-noinfo
CVE-2010-0911 cpe:2.3:a:oracle:database_server:9.2.0.8dv:*
cpe:2.3:a:oracle:database_server:9.2.0.8:*
cpe:2.3:a:oracle:database…
2024-11-21 10:13
2010-07-14
Show GitHub Exploit DB Packet Storm
264 -
7.8
HIGH Unspecified vulnerability in the Net Foundation Layer component in Oracle Database Server 9.2.0.8, 10.1.0.5, 10.2.0.4, 11.1.0.7, and 11.2.0.1, when running on Windows, allows remote attackers to affe… NVD-CWE-noinfo
CVE-2010-0903 cpe:2.3:a:oracle:database_server:9.2.0.8:*
cpe:2.3:a:oracle:database_server:11.2.0.1:*
cpe:2.3:a:oracle:database_…
2024-11-21 10:13
2010-07-14
Show GitHub Exploit DB Packet Storm
265 -
6.0
MEDIUM Unspecified vulnerability in the Oracle OLAP component in Oracle Database Server 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect confidentia… NVD-CWE-noinfo
CVE-2010-0902 cpe:2.3:a:oracle:database_server:9.2.0.8dv:*
cpe:2.3:a:oracle:database_server:9.2.0.8:*
cpe:2.3:a:oracle:database…
2024-11-21 10:13
2010-07-14
Show GitHub Exploit DB Packet Storm
266 -
2.1
LOW Unspecified vulnerability in the Export component in Oracle Database Server 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect confidentiality … NVD-CWE-noinfo
CVE-2010-0901 cpe:2.3:a:oracle:database_server:9.2.0.8dv:*
cpe:2.3:a:oracle:database_server:9.2.0.8:*
cpe:2.3:a:oracle:database…
2024-11-21 10:13
2010-07-14
Show GitHub Exploit DB Packet Storm
267 -
2.6
LOW Unspecified vulnerability in the Network Layer component in Oracle Database Server 9.2.0.8, 10.1.0.5, 10.2.0.4, 11.1.0.7, and 11.2.0.1, when running on Windows, allows remote attackers to affect avai… NVD-CWE-noinfo
CVE-2010-0900 cpe:2.3:a:oracle:database_server:9.2.0.8:*
cpe:2.3:a:oracle:database_server:11.2.0.1:*
cpe:2.3:a:oracle:database_…
2024-11-21 10:13
2010-07-14
Show GitHub Exploit DB Packet Storm
268 -
4.3
MEDIUM Unspecified vulnerability in the Application Express component in Oracle Database Server 3.2.0.00.27 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2010-0892 cpe:2.3:a:oracle:database_server:3.2.0.00.27:* 2024-11-21 10:13
2010-07-14
Show GitHub Exploit DB Packet Storm
269 -
6.8
MEDIUM The kg_accept_krb5 function in krb5/accept_sec_context.c in the GSS-API library in MIT Kerberos 5 (aka krb5) through 1.7.1 and 1.8 before 1.8.2, as used in kadmind and other applications, does not pr… CWE-476
 NULL Pointer Dereference
CVE-2010-1321 cpe:2.3:a:oracle:database_server:-:* 2021-02-3 03:53
2010-05-20
Show GitHub Exploit DB Packet Storm
270 -
4.0
MEDIUM Unspecified vulnerability in the XML DB component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote authenticated users to affect confidentiality via unknown vectors. NVD-CWE-noinfo
CVE-2010-0851 cpe:2.3:a:oracle:database_server:9.2.0.8dv:*
cpe:2.3:a:oracle:database_server:9.2.0.8:*
cpe:2.3:a:oracle:database…
2012-10-23 12:20
2010-04-14
Show GitHub Exploit DB Packet Storm