CVE-2014-6488

low
Published 2014-10-15 · Modified 2026-05-06
CVSS v3
CVSS v2
2.1
VIR risk
2.1

Description

Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Enterprise Manager Grid Control EM Base Platform: 10.2.0.5, 11.1.0.1 EM DB Control: 11.1.0.7, 11.2.0.3, 11.2.0.4 EM Plugin for DB: 12.1.0.4, 12.1.0.5, and 12.1.0.6 allows remote authenticated users to affect integrity via unknown vectors related to Content Management.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: secalert_us@oracle.com — http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html

Application impact

VendorProductVersionsFixed
oracle oracleenterprise_manager_grid_control10.2.0.5
oracle oracleenterprise_manager_grid_control11.1.0.1
oracle oracleenterprise_manager_grid_control12.1.0.4
oracle oracleenterprise_manager_grid_control12.1.0.5
oracle oracleenterprise_manager_grid_control12.1.0.6
oracle oracleenterprise_manager_database_control11.1.0.7
oracle oracleenterprise_manager_database_control11.2.0.3
oracle oracleenterprise_manager_database_control11.2.0.4

References

Verify integrity in audit chain (admin only). AS-IS.