peter bassill · operator
$ cve CVE-2008-3984 JSON

CVE-2008-3984 EXPLOIT

5.5
MEDIUM · CVSS 2.0 · EPSS 41.8% (pctl 99)

Patch early

A public exploit exists.

Description

Unspecified vulnerability in the Workspace Manager component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.3, and 11.1.0.6 allows remote authenticated users to affect confidentiality and integrity, related to SYS.LT and WMSYS.LT, a different vulnerability than CVE-2008-3982 and CVE-2008-3983.

Scoring

CVSS5.5 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
EPSS41.81% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2008-10-14
Last modified2026-06-16

Affected (3)

VendorProduct
oracledatabase 10g
oracledatabase 11i
oracledatabase 9i

Public exploits

SourceTitleDate
exploit-dbOracle 10g - SYS.LT.REMOVEWORKSPACE SQL Injection2009-01-06

References

→ the Explorer  ·  watch your stack  ·  NVD