DB: Oracle DBMS_REPCAT_RPC.VALIDATE_REMOTE_RC SQL Injection
This signature detects attempts to exploit a known vulnerability in Oracle Database Server's DBMS_REPCAT_RPC package. A successful attack allows an attacker to execute arbitrary SQL commands on the affected server.
Extended Description
Oracle Advanced Replication is prone to a remote privilege-escalation vulnerability that can be exploited over the 'Oracle Net' protocol. An attacker must have 'Create Session' privileges to exploit this issue.
Affected Products
Oracle oracle10g_personal_edition
References
BugTraq: 35685
CVE: CVE-2009-1021
URL: http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujul2009.html
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Oracle
5.5