CVE Vulnerabilities

CVE-2002-1639

Published: Apr 01, 2002 | Modified: Sep 26, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Oracle Configurator before 11.5.7.17.32 and 11.5.6.16.53 allows remote attackers to obtain sensitive information via a request to the oracle.apps.cz.servlet.UiServlet servlet with the test parameter set to version or host.

Affected Software

Name Vendor Start Version End Version
Configurator Oracle 11.5.6.0.0 (including) 11.5.6.16.53 (including)
Configurator Oracle 11.5.7.0.0 (including) 11.5.7.17.31 (including)
Configurator Oracle 11i (including) 11i (including)

References