CVE-2007-6260

The installation process for Oracle 10g and llg uses accounts with default passwords, which allows remote attackers to obtain login access by connecting to the Listener. NOTE: at the end of the installation, if performed using the Database Configuration Assistant (DBCA), most accounts are disabled or their passwords are changed.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oracle:database_server:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-12-06 02:46

Updated : 2023-12-10 10:40


NVD link : CVE-2007-6260

Mitre link : CVE-2007-6260

CVE.ORG link : CVE-2007-6260


JSON object : View

Products Affected

oracle

  • database_server
CWE
CWE-255

Credentials Management Errors