Description
Multiple unspecified vulnerabilities in Oracle Database 10.1.0.5 and 10.2.0.3 have unknown impact and remote authenticated attack vectors related to (1) SDO_UTIL in the Oracle Spatial component, aka DB05; or (2) fine grained auditing in the Audit component, aka DB14. NOTE: the previous information was obtained from the Oracle CPU. Oracle has not commented on reliable researcher claims that DB05 is SQL injection.
Remediation
References
Related Vulnerabilities
WordPress Plugin WangGuard Multiple Vulnerabilities (1.7.2)
WordPress Plugin AdSense Manager Cross-Site Scripting (4.0.3)
Kong Server Uncontrolled Resource Consumption Vulnerability (CVE-2023-44487)
PHP 4.3.0 file disclosure and possible code execution
PostgreSQL Improper Control of Dynamically-Managed Code Resources Vulnerability (CVE-2022-2625)