CVE: CVE-2005-2291

Export to Word

Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 passes the cleartext password as a parameter when starting sqlplus, which allows local users to gain sensitive information.

Threat-Mapped Scoring

Score: 3.0

Priority: P2 - Serious (High)

EPSS

Score: 0.00798
Percentile: 0.73035

CVSS Scoring

CVSS v2 Score: 4.6

Severity:

Affected Products

← Back to Home