CVE-2006-0257 | Oracle Database Server 9.2.0.7/10.1.0.5/10.2.0.1 Change Data Capture cdc_allocate_lock sql injection (VU#545804 / Nessus ID 56051)
A vulnerability classified as critical was found in Oracle Database Server 9.2.0.7/10.1.0.5/10.2.0.1. Affected by this vulnerability is the function cdc_allocate_lock of the component Change Data Capture. The manipulation leads to sql injection.
This vulnerability is known as CVE-2006-0257. The attack can be launched remotely. Furthermore, there is an exploit available.
The real existence of this vulnerability is still doubted at the moment.
It is recommended to apply a patch to fix this issue.