CVE-2002-1632
N/A
N/A
Summary
Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment variables and other sensitive information via (1) info.jsp, (2) printenv, (3) echo, or (4) echo2.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.oracle.com/technology/deploy/security/pdf/ias_modplsql_alert.pdf
- http://www.kb.cert.org/vuls/id/SVIM-576QLZ
- http://www.securityfocus.com/bid/6556
- http://www.nextgenss.com/papers/hpoas.pdf
- http://www.kb.cert.org/vuls/id/717827
- https://exchange.xforce.ibmcloud.com/vulnerabilities/8665
References
- http://www.oracle.com/technology/deploy/security/pdf/ias_modplsql_alert.pdf
- http://www.kb.cert.org/vuls/id/SVIM-576QLZ
- http://www.securityfocus.com/bid/6556
- http://www.nextgenss.com/papers/hpoas.pdf
- http://www.kb.cert.org/vuls/id/717827
- https://exchange.xforce.ibmcloud.com/vulnerabilities/8665
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.