Back

CVE-2006-0435

Unspecified vulnerability in Oracle PL/SQL (PLSQL), as used in Database Server DS 9.2.0.7 and 10.1.0.5, Application Server 1.0.2.2, 9.0.4.2, 10.1.2.0.2, 10.1.2.1.0, and 10.1.3.0.0, E-Business Suite and Applications 11.5.10, and Collaboration Suite 10.1.1, 10.1.2.0, 10.1.2.1, and 9.0.4.2, allows attackers to bypass the PLSQLExclusion list and access excluded packages and procedures, aka Vuln# PLSQL01.

Published: Jan 26, 2006 Modified: Jun 16, 2026
NVD-CWE-noinfo

CVSS Metrics

Affected Products (40)

Vendor Product Version
oracle application_server *
oracle application_server 1.0.2
oracle application_server 1.0.2.0
oracle application_server 1.0.2.1
oracle application_server 1.0.2.1s
oracle application_server 1.0.2.2
oracle application_server 1.0.2.2.2
oracle application_server 9.0.2
oracle application_server 9.0.2.0.0
oracle application_server 9.0.2.0.1
oracle application_server 9.0.2.1
oracle application_server 9.0.2.2
oracle application_server 9.0.2.3
oracle application_server 9.0.3
oracle application_server 9.0.3.1
oracle application_server 9.0.4.0
oracle application_server 9.0.4.1
oracle application_server 9.0.4.2
oracle application_server 9.2.0.6
oracle application_server 9.2.0.7

…and 20 more

GitHub Security Advisory GHSA-rwxq-ghr2-v6c9

Unspecified vulnerability in Oracle PL/SQL (PLSQL), as used in Database Server DS 9.2.0.7 and 10...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 6.84%

Top 6% most likely to be exploited

Threat Score 32.1 / 100

Data Sources

NVD EPSS GitHub