{"api_version":"1","generated_at":"2026-07-23T12:26:04+00:00","cve":"CVE-2007-2110","urls":{"html":"https://cve.report/CVE-2007-2110","api":"https://cve.report/api/cve/CVE-2007-2110.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-2110","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-2110"},"summary":{"title":"CVE-2007-2110","description":"Unspecified vulnerability in the Core RDBMS component for Oracle Database 9.0.1.5+, 9.2.0.7, and 10.1.0.4 on Windows systems has unknown impact and attack vectors, aka DB03.  NOTE: as of 20070424, Oracle has not disputed reliable claims that DB03 occurs because RDBMS uses a NULL Discretionary Access Control List (DACL) for the Oracle process and certain shared memory sections, which allows local users to inject threads and execute arbitrary code via the OpenProcess, OpenThread, and SetThreadContext functions (DB03).","state":"PUBLISHED","assigner":"mitre","published_at":"2007-04-18 18:19:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-noinfo","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.4","severity":"","vector":"AV:L/AC:M/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:L/AC:M/Au:N/C:P/I:P/A:P","baseScore":4.4,"accessVector":"LOCAL","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.us-cert.gov/cas/techalerts/TA07-108A.html","name":"http://www.us-cert.gov/cas/techalerts/TA07-108A.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA07-108A -- Oracle Releases Patches for Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ngssoftware.com/research/papers/NGSSoftware-OracleCPUAPR2007.pdf","name":"http://www.ngssoftware.com/research/papers/NGSSoftware-OracleCPUAPR2007.pdf","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"application/pdf","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/23532","name":"http://www.securityfocus.com/bid/23532","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Oracle April 2007 Security Update Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.securitytracker.com/id?1017927","name":"http://www.securitytracker.com/id?1017927","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Oracle Database and Other Products Have Unspecified Vulnerabilities With Unspecified Impact","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/1426","name":"http://www.vupen.com/english/advisories/2007/1426","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.integrigy.com/security-resources/analysis/Integrigy_Oracle_CPU_April_2007_Analysis.pdf","name":"http://www.integrigy.com/security-resources/analysis/Integrigy_Oracle_CPU_April_2007_Analysis.pdf","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Search | Integrigy","mime":"application/pdf","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/466329/100/200/threaded","name":"http://www.securityfocus.com/archive/1/466329/100/200/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.blackhat.com/presentations/bh-dc-07/Cerrudo/Presentation/bh-dc-07-Cerrudo-ppt.pdf","name":"https://www.blackhat.com/presentations/bh-dc-07/Cerrudo/Presentation/bh-dc-07-Cerrudo-ppt.pdf","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"application/pdf","httpstatus":"200","archivestatus":"200"},{"url":"http://www.red-database-security.com/advisory/oracle_cpu_apr_2007.html","name":"http://www.red-database-security.com/advisory/oracle_cpu_apr_2007.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.freelists.org/archives/oracle-l/12-2006/msg00004.html","name":"http://www.freelists.org/archives/oracle-l/12-2006/msg00004.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"FreeLists / oracle-l / Re: Oracle 9i on Windows 2003 -- Vulnerability Question","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.html","name":"http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Oracle Critical Patch Update - April 2007","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-2110","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-2110","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"2110","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"2110","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"database_server","cpe6":"10.1.0.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"2110","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"database_server","cpe6":"9.0.1.5","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"2110","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"database_server","cpe6":"9.2.0.7","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T13:23:50.839Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"[oracle-l] 20061201 Re: Oracle 9i on Windows 2003 -- Vulnerability Question","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.freelists.org/archives/oracle-l/12-2006/msg00004.html"},{"name":"TA07-108A","tags":["third-party-advisory","x_refsource_CERT","x_transferred"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-108A.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.html"},{"name":"23532","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/23532"},{"name":"1017927","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1017927"},{"name":"SSRT061201","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://www.securityfocus.com/archive/1/466329/100/200/threaded"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://www.blackhat.com/presentations/bh-dc-07/Cerrudo/Presentation/bh-dc-07-Cerrudo-ppt.pdf"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.red-database-security.com/advisory/oracle_cpu_apr_2007.html"},{"name":"HPSBMA02133","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://www.securityfocus.com/archive/1/466329/100/200/threaded"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.ngssoftware.com/research/papers/NGSSoftware-OracleCPUAPR2007.pdf"},{"name":"ADV-2007-1426","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1426"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.integrigy.com/security-resources/analysis/Integrigy_Oracle_CPU_April_2007_Analysis.pdf"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-04-17T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in the Core RDBMS component for Oracle Database 9.0.1.5+, 9.2.0.7, and 10.1.0.4 on Windows systems has unknown impact and attack vectors, aka DB03.  NOTE: as of 20070424, Oracle has not disputed reliable claims that DB03 occurs because RDBMS uses a NULL Discretionary Access Control List (DACL) for the Oracle process and certain shared memory sections, which allows local users to inject threads and execute arbitrary code via the OpenProcess, OpenThread, and SetThreadContext functions (DB03)."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-16T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"[oracle-l] 20061201 Re: Oracle 9i on Windows 2003 -- Vulnerability Question","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.freelists.org/archives/oracle-l/12-2006/msg00004.html"},{"name":"TA07-108A","tags":["third-party-advisory","x_refsource_CERT"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-108A.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.html"},{"name":"23532","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/23532"},{"name":"1017927","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1017927"},{"name":"SSRT061201","tags":["vendor-advisory","x_refsource_HP"],"url":"http://www.securityfocus.com/archive/1/466329/100/200/threaded"},{"tags":["x_refsource_MISC"],"url":"https://www.blackhat.com/presentations/bh-dc-07/Cerrudo/Presentation/bh-dc-07-Cerrudo-ppt.pdf"},{"tags":["x_refsource_MISC"],"url":"http://www.red-database-security.com/advisory/oracle_cpu_apr_2007.html"},{"name":"HPSBMA02133","tags":["vendor-advisory","x_refsource_HP"],"url":"http://www.securityfocus.com/archive/1/466329/100/200/threaded"},{"tags":["x_refsource_MISC"],"url":"http://www.ngssoftware.com/research/papers/NGSSoftware-OracleCPUAPR2007.pdf"},{"name":"ADV-2007-1426","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1426"},{"tags":["x_refsource_MISC"],"url":"http://www.integrigy.com/security-resources/analysis/Integrigy_Oracle_CPU_April_2007_Analysis.pdf"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-2110","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in the Core RDBMS component for Oracle Database 9.0.1.5+, 9.2.0.7, and 10.1.0.4 on Windows systems has unknown impact and attack vectors, aka DB03.  NOTE: as of 20070424, Oracle has not disputed reliable claims that DB03 occurs because RDBMS uses a NULL Discretionary Access Control List (DACL) for the Oracle process and certain shared memory sections, which allows local users to inject threads and execute arbitrary code via the OpenProcess, OpenThread, and SetThreadContext functions (DB03)."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"[oracle-l] 20061201 Re: Oracle 9i on Windows 2003 -- Vulnerability Question","refsource":"MLIST","url":"http://www.freelists.org/archives/oracle-l/12-2006/msg00004.html"},{"name":"TA07-108A","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA07-108A.html"},{"name":"http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.html","refsource":"CONFIRM","url":"http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.html"},{"name":"23532","refsource":"BID","url":"http://www.securityfocus.com/bid/23532"},{"name":"1017927","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1017927"},{"name":"SSRT061201","refsource":"HP","url":"http://www.securityfocus.com/archive/1/466329/100/200/threaded"},{"name":"https://www.blackhat.com/presentations/bh-dc-07/Cerrudo/Presentation/bh-dc-07-Cerrudo-ppt.pdf","refsource":"MISC","url":"https://www.blackhat.com/presentations/bh-dc-07/Cerrudo/Presentation/bh-dc-07-Cerrudo-ppt.pdf"},{"name":"http://www.red-database-security.com/advisory/oracle_cpu_apr_2007.html","refsource":"MISC","url":"http://www.red-database-security.com/advisory/oracle_cpu_apr_2007.html"},{"name":"HPSBMA02133","refsource":"HP","url":"http://www.securityfocus.com/archive/1/466329/100/200/threaded"},{"name":"http://www.ngssoftware.com/research/papers/NGSSoftware-OracleCPUAPR2007.pdf","refsource":"MISC","url":"http://www.ngssoftware.com/research/papers/NGSSoftware-OracleCPUAPR2007.pdf"},{"name":"ADV-2007-1426","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1426"},{"name":"http://www.integrigy.com/security-resources/analysis/Integrigy_Oracle_CPU_April_2007_Analysis.pdf","refsource":"MISC","url":"http://www.integrigy.com/security-resources/analysis/Integrigy_Oracle_CPU_April_2007_Analysis.pdf"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-2110","datePublished":"2007-04-18T18:00:00.000Z","dateReserved":"2007-04-18T00:00:00.000Z","dateUpdated":"2024-08-07T13:23:50.839Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-04-18 18:19:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-noinfo","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:M/Au:N/C:P/I:P/A:P","baseScore":4.4,"accessVector":"LOCAL","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.4,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:database_server:9.0.1.5:*:*:*:*:*:*:*","matchCriteriaId":"B6C67572-800C-4214-AD12-E9017A9A5BAA"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:database_server:9.2.0.7:*:*:*:*:*:*:*","matchCriteriaId":"F7847CEB-DD8D-45A0-B500-95D511110FB3"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:database_server:10.1.0.4:*:*:*:*:*:*:*","matchCriteriaId":"F21B42DF-71DC-4FC4-8050-CFF7A3B641E5"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*","matchCriteriaId":"2CF61F35-5905-4BA9-AD7E-7DB261D2F256"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"2110","Ordinal":"1","Title":"CVE-2007-2110","CVE":"CVE-2007-2110","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"2110","Ordinal":"1","NoteData":"Unspecified vulnerability in the Core RDBMS component for Oracle Database 9.0.1.5+, 9.2.0.7, and 10.1.0.4 on Windows systems has unknown impact and attack vectors, aka DB03.  NOTE: as of 20070424, Oracle has not disputed reliable claims that DB03 occurs because RDBMS uses a NULL Discretionary Access Control List (DACL) for the Oracle process and certain shared memory sections, which allows local users to inject threads and execute arbitrary code via the OpenProcess, OpenThread, and SetThreadContext functions (DB03).","Type":"Description","Title":"CVE-2007-2110"},{"CveYear":"2007","CveId":"2110","Ordinal":"2","NoteData":"2007-04-18","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"2110","Ordinal":"3","NoteData":"2018-10-16","Type":"Other","Title":"Modified"}]}}}