19 Jul 2007
A raft of 'highly critical' flaws have been found in several of Oracle's software products.
The vulnerabilities could allow a remote user to bypass a system's security, manipulate data or cause a denial of service, according to Secunia.
"Some of these have unknown impacts, while others can be exploited to bypass certain security restrictions and conduct SQL injection attacks, cause denial of service, and potentially compromise a vulnerable system," said a Secunia advisory, which rated the vulnerabilities as 'highly critical'.
Oracle has already issued a patch to fix the flaws in its software and has advised users to apply it immediately.
"Due to the threat posed by a successful attack, Oracle strongly recommends that fixes are applied as soon as possible," said Oracle in a security statement. "This Critical Patch Update contains 45 new security fixes across all products."
The problems were discovered in a range of applications, including Oracle Application Express, Application Server, Collaboration Suite, Oracle Database, E-Business Suite, PeopleSoft Enterprise CRM and Oracle Secure Enterprise Search.
Latest stories from Software
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Sneak peek at the forthcoming glass-based machine
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Job Specification For: Software Developer...
A global Investment Bank requires a Project Manager to...
Web Developer, .Net Software Developer - ASP.Net, C...
Verint Voice Recording Support Engineer (Verint / Nice...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?