{"api_version":"1","generated_at":"2026-07-23T11:49:37+00:00","cve":"CVE-2006-5353","urls":{"html":"https://cve.report/CVE-2006-5353","api":"https://cve.report/api/cve/CVE-2006-5353.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2006-5353","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2006-5353"},"summary":{"title":"CVE-2006-5353","description":"Unspecified vulnerability in Oracle HTTP Server component in Oracle Application Server 9.0.4.3, 10.1.2.0.2, 10.1.2.1.0, and 10.1.3.0.0, and Oracle Collaboration Suite 9.0.4.2 and 10.1.2, has unknown impact and remote attack vectors related to the Mod_rewrite Module, aka Vuln# OHS01.","state":"PUBLISHED","assigner":"mitre","published_at":"2006-10-18 01:07:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://securitytracker.com/id?1017077","name":"http://securitytracker.com/id?1017077","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Oracle Database and Other Products Have Multiple Unspecified Vulnerabilities With Unspecified Impact","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.red-database-security.com/advisory/oracle_cpu_oct_2006.html","name":"http://www.red-database-security.com/advisory/oracle_cpu_oct_2006.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.oracle.com/technetwork/topics/security/cpuoct2006-095368.html","name":"http://www.oracle.com/technetwork/topics/security/cpuoct2006-095368.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Oracle Critical Patch Update - October 2006","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/20588","name":"http://www.securityfocus.com/bid/20588","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"Oracle October 2006 Security Update Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/advisories/22396","name":"http://secunia.com/advisories/22396","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Oracle Products Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.us-cert.gov/cas/techalerts/TA06-291A.html","name":"http://www.us-cert.gov/cas/techalerts/TA06-291A.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA06-291A -- Oracle Updates for Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/449711/100/0/threaded","name":"http://www.securityfocus.com/archive/1/449711/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2006/4065","name":"http://www.vupen.com/english/advisories/2006/4065","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2006-5353","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2006-5353","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2006","cve_id":"5353","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"application_server","cpe6":"10.1.2.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"5353","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"application_server","cpe6":"10.1.2.0.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"5353","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"application_server","cpe6":"9.0.4.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"5353","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"collaboration_suite","cpe6":"10.1.2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"5353","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"collaboration_suite","cpe6":"9.0.4.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T19:48:30.136Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.red-database-security.com/advisory/oracle_cpu_oct_2006.html"},{"name":"20588","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/20588"},{"name":"HPSBMA02133","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://www.securityfocus.com/archive/1/449711/100/0/threaded"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.oracle.com/technetwork/topics/security/cpuoct2006-095368.html"},{"name":"SSRT061201","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://www.securityfocus.com/archive/1/449711/100/0/threaded"},{"name":"ADV-2006-4065","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2006/4065"},{"name":"22396","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/22396"},{"name":"1017077","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1017077"},{"name":"TA06-291A","tags":["third-party-advisory","x_refsource_CERT","x_transferred"],"url":"http://www.us-cert.gov/cas/techalerts/TA06-291A.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2006-10-17T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in Oracle HTTP Server component in Oracle Application Server 9.0.4.3, 10.1.2.0.2, 10.1.2.1.0, and 10.1.3.0.0, and Oracle Collaboration Suite 9.0.4.2 and 10.1.2, has unknown impact and remote attack vectors related to the Mod_rewrite Module, aka Vuln# OHS01."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-17T20:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_MISC"],"url":"http://www.red-database-security.com/advisory/oracle_cpu_oct_2006.html"},{"name":"20588","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/20588"},{"name":"HPSBMA02133","tags":["vendor-advisory","x_refsource_HP"],"url":"http://www.securityfocus.com/archive/1/449711/100/0/threaded"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.oracle.com/technetwork/topics/security/cpuoct2006-095368.html"},{"name":"SSRT061201","tags":["vendor-advisory","x_refsource_HP"],"url":"http://www.securityfocus.com/archive/1/449711/100/0/threaded"},{"name":"ADV-2006-4065","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2006/4065"},{"name":"22396","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/22396"},{"name":"1017077","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1017077"},{"name":"TA06-291A","tags":["third-party-advisory","x_refsource_CERT"],"url":"http://www.us-cert.gov/cas/techalerts/TA06-291A.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-5353","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in Oracle HTTP Server component in Oracle Application Server 9.0.4.3, 10.1.2.0.2, 10.1.2.1.0, and 10.1.3.0.0, and Oracle Collaboration Suite 9.0.4.2 and 10.1.2, has unknown impact and remote attack vectors related to the Mod_rewrite Module, aka Vuln# OHS01."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://www.red-database-security.com/advisory/oracle_cpu_oct_2006.html","refsource":"MISC","url":"http://www.red-database-security.com/advisory/oracle_cpu_oct_2006.html"},{"name":"20588","refsource":"BID","url":"http://www.securityfocus.com/bid/20588"},{"name":"HPSBMA02133","refsource":"HP","url":"http://www.securityfocus.com/archive/1/449711/100/0/threaded"},{"name":"http://www.oracle.com/technetwork/topics/security/cpuoct2006-095368.html","refsource":"CONFIRM","url":"http://www.oracle.com/technetwork/topics/security/cpuoct2006-095368.html"},{"name":"SSRT061201","refsource":"HP","url":"http://www.securityfocus.com/archive/1/449711/100/0/threaded"},{"name":"ADV-2006-4065","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2006/4065"},{"name":"22396","refsource":"SECUNIA","url":"http://secunia.com/advisories/22396"},{"name":"1017077","refsource":"SECTRACK","url":"http://securitytracker.com/id?1017077"},{"name":"TA06-291A","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA06-291A.html"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2006-5353","datePublished":"2006-10-18T01:00:00.000Z","dateReserved":"2006-10-17T00:00:00.000Z","dateUpdated":"2024-08-07T19:48:30.136Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2006-10-18 01:07:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_server:9.0.4.3:*:*:*:*:*:*:*","matchCriteriaId":"9CA9867F-D7BC-4230-9584-C2FBB6642482"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_server:10.1.2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"FB8F5AAE-0365-4E01-AB04-CDC6D58B00B6"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_server:10.1.2.0.2:*:*:*:*:*:*:*","matchCriteriaId":"F0B4BAA9-D045-4D2B-8220-47F47ED936DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:collaboration_suite:9.0.4.2:*:*:*:*:*:*:*","matchCriteriaId":"8548B5B0-F465-4424-A316-50FDDE450A24"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:collaboration_suite:10.1.2.0:*:*:*:*:*:*:*","matchCriteriaId":"A0E4CD35-3C6D-4C72-8C11-7E58AC3160AC"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2006","CveId":"5353","Ordinal":"1","Title":"CVE-2006-5353","CVE":"CVE-2006-5353","Year":"2006"},"notes":[{"CveYear":"2006","CveId":"5353","Ordinal":"1","NoteData":"Unspecified vulnerability in Oracle HTTP Server component in Oracle Application Server 9.0.4.3, 10.1.2.0.2, 10.1.2.1.0, and 10.1.3.0.0, and Oracle Collaboration Suite 9.0.4.2 and 10.1.2, has unknown impact and remote attack vectors related to the Mod_rewrite Module, aka Vuln# OHS01.","Type":"Description","Title":"CVE-2006-5353"},{"CveYear":"2006","CveId":"5353","Ordinal":"2","NoteData":"2006-10-17","Type":"Other","Title":"Published"},{"CveYear":"2006","CveId":"5353","Ordinal":"3","NoteData":"2018-10-17","Type":"Other","Title":"Modified"}]}}}