VYPR
Unrated severityNVD Advisory· Published Oct 18, 2006· Updated Jun 16, 2026

CVE-2006-5336

CVE-2006-5336

Description

Multiple unspecified vulnerabilities in the Change Data Capture (CDC) component in Oracle Database 9.2.0.7, 10.1.0.5, and have unknown impact and remote authenticated attack vectors related to (1) sys.dbms_cdc_ipublish (Vuln# DB05) and (2) sys.dbms_cdc_isubscribe (DB06). NOTE: as of 20061023, Oracle has not disputed reports from reliable third parties that DB05 is for SQL injection in CREATE_CHANGE_TABLE and CHANGE_TABLE_TRIGGER, and DB06 is for PL/SQL injection in the PREPARE_UNBOUNDED_VIEW procedure.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:oracle:database_server:10.1.0.5:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:oracle:database_server:10.1.0.5:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:database_server:10.2.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:database_server:9.2.0.7:*:*:*:*:*:*:*
  • Range: 9.2.0.7, 10.1.0.5

Patches

Vulnerability mechanics

References

12

News mentions

0

No linked articles in our index yet.