The OHS component 1.0.2 through 10.x, when UseWebcacheIP is disabled, in Oracle Application Server allows remote attackers to bypass HTTP Server mod_access restrictions via a request to the webcache TCP port 7778.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Application_server | Oracle | 10.1.0.2 (including) | 10.1.0.2 (including) |
Application_server | Oracle | 10.1.0.3 (including) | 10.1.0.3 (including) |
Application_server | Oracle | 10.1.0.3.1 (including) | 10.1.0.3.1 (including) |
Application_server | Oracle | 10.1.2 (including) | 10.1.2 (including) |