CVE-2006-1037
SQL injection vulnerability in the Oracle Diagnostics module 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via unknown attack vectors.
Date published : 2006-03-07
http://www.securityfocus.com/bid/16844
http://www.integrigy.com/info/IntegrigySecurityAnalysis-OracleDiag0206.pdf