Vulnerability in Oracle Database Server Core RDBMS Component
CVE-2019-2776
7.6HIGH
What is CVE-2019-2776?
An improper access control vulnerability in the Core RDBMS component of Oracle Database Server allows high-privileged attackers with the Create Any Index privilege to exploit network access via OracleNet. This may lead to significant impacts on database integrity and confidentiality, enabling them to gain unauthorized access and manipulate critical data. The exploited vulnerability can result in unauthorized updates, insertions, or deletions of data, impacting not only the Core RDBMS but also potentially affecting additional products within the Oracle ecosystem.
Affected Version(s)
Text 12.1.0.2
Text 12.2.0.1
Text 18c