Oracle Database SYS.KUPV$FT Multiple SQL Injection Vulnerabilities
BID:16294
Info
Oracle Database SYS.KUPV$FT Multiple SQL Injection Vulnerabilities
| Bugtraq ID: | 16294 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-0586 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 17 2006 12:00AM |
| Updated: | Feb 26 2007 07:26PM |
| Credit: | Discovered by Alexander Kornbrust of Red-Database-Security GmbH. |
| Vulnerable: |
Oracle Oracle10g Standard Edition 10.1 .4.2 Oracle Oracle10g Standard Edition 10.1 .0.5 Oracle Oracle10g Standard Edition 10.1 .0.4 Oracle Oracle10g Standard Edition 10.1 .0.3.1 Oracle Oracle10g Standard Edition 10.1 .0.3 Oracle Oracle10g Standard Edition 10.1 .0.2 Oracle Oracle10g Personal Edition 10.1 .0.4 Oracle Oracle10g Personal Edition 10.1 .0.3.1 Oracle Oracle10g Personal Edition 10.1 .0.3 Oracle Oracle10g Personal Edition 10.1 .0.2 Oracle Oracle10g Enterprise Edition 10.1 .0.4 Oracle Oracle10g Enterprise Edition 10.1 .0.3.1 Oracle Oracle10g Enterprise Edition 10.1 .0.3 Oracle Oracle10g Enterprise Edition 10.1 .0.2 Oracle Oracle10g Application Server 10.1.2 .1.0 Oracle Oracle10g Application Server 10.1.2 .0.2 Oracle Oracle10g Application Server 10.1.2 .0.1 Oracle Oracle10g Application Server 10.1.2 Oracle Oracle10g Application Server 10.1 .0.4 Oracle Oracle10g Application Server 10.1 .0.3.1 Oracle Oracle10g Application Server 10.1 .0.3 Oracle Oracle10g Application Server 10.1 .0.2 |
| Not Vulnerable: | |
Discussion
Oracle Database SYS.KUPV$FT Multiple SQL Injection Vulnerabilities
Oracle 10g is prone to multiple SQL-injection vulnerabilities. These issues affect various functions of the 'SYS.KUPV$FT' package.
Exploiting these vulnerabilities could permit remote attackers to pass malicious input to database queries, resulting in the modification of query logic or other attacks. Successful exploitation may allow the attacker to compromise the application, retrieve sensitive information, or modify data; other consequences are possible as well.
Oracle 10g Release 1 and prior versions are considered vulnerable to these issues.
These issues are part of the vulnerabilities addressed by Oracle in Oracle Critical Patch Update - January 2006. Please see BID 16287 (Oracle January Security Update Multiple Vulnerabilities) for more information.
Oracle 10g is prone to multiple SQL-injection vulnerabilities. These issues affect various functions of the 'SYS.KUPV$FT' package.
Exploiting these vulnerabilities could permit remote attackers to pass malicious input to database queries, resulting in the modification of query logic or other attacks. Successful exploitation may allow the attacker to compromise the application, retrieve sensitive information, or modify data; other consequences are possible as well.
Oracle 10g Release 1 and prior versions are considered vulnerable to these issues.
These issues are part of the vulnerabilities addressed by Oracle in Oracle Critical Patch Update - January 2006. Please see BID 16287 (Oracle January Security Update Multiple Vulnerabilities) for more information.
Exploit / POC
Oracle Database SYS.KUPV$FT Multiple SQL Injection Vulnerabilities
An exploit is not required.
The following exploits are available:
An exploit is not required.
The following exploits are available:
Solution / Fix
Oracle Database SYS.KUPV$FT Multiple SQL Injection Vulnerabilities
Solution:
The researcher responsible for discovering these issues has indicated that these vulnerabilities have been addressed by Oracle in Oracle Critical Patch Update - January 2006. Please see the referenced advisory for details on obtaining and applying the appropriate updates.
Solution:
The researcher responsible for discovering these issues has indicated that these vulnerabilities have been addressed by Oracle in Oracle Critical Patch Update - January 2006. Please see the referenced advisory for details on obtaining and applying the appropriate updates.
References
Oracle Database SYS.KUPV$FT Multiple SQL Injection Vulnerabilities
References:
References:
- Critical Patch Update - January 2006 (Oracle)
- Oracle Homepage (Oracle)
- SQL Injection in package SYS.KUPV$FT (Red-Database-Security GmbH)
- Oracle Database 10g Rel. 1 - SQL Injection in SYS.KUPV$FT ([email protected])