Question: Case Project 3-1: Determining Vulnerabilities for a Database Server You have interviewed Ms. Erin Roye, an IT staff member, after conducting your initial security testing
Case Project 3-1: Determining Vulnerabilities for a Database Server You have interviewed Ms. Erin Roye, an IT staff member, after conducting your initial security testing of the Alexander Rocco Corporation. She informs you that the company is running Oracle 10g for its personnel database. You decide to research whether Oracle 10g has any known vulnerabilities that you can include in your report to Ms. Roye. You dont know whether Ms. Roye has installed any patches or software fixes; you simply want to create a report with general information. Based on this information, write a memo to Ms. Roye describing any CVEs (common vulnerabilities and exposures) or CAN (candidate) documents you found related to Oracle 10g. (Hint: A search at US-CERT, www.us-cert.gov, can save you a lot of time.) If you do find vulnerabilities, your memo should include recommendations and be written in a way that doesnt generate fear or uncertainty but encourages prudent decision making
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
