Oracle Web Listener Denial of Service Vulnerability
BID:1427
Info
Oracle Web Listener Denial of Service Vulnerability
| Bugtraq ID: | 1427 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Jul 05 2000 12:00AM |
| Updated: | Jul 05 2000 12:00AM |
| Credit: | This bug was discovered by Peter Grundl <[email protected]> and posted to the Bugtraq mailing list on Tue, 4 Jul 2000. |
| Vulnerable: |
Oracle Web Listener 4.0.8 for AIX Oracle Web Listener 4.0.7 for AIX |
| Not Vulnerable: | |
Discussion
Oracle Web Listener Denial of Service Vulnerability
Certain versions of the Oracle Web Listener which is part of the Oracle Application Server is susceptible to a denial of service attack. This attack is delivered via a user sending a malformed URL (variations on ".." ) which results in the web server to cease serving requests.
Certain versions of the Oracle Web Listener which is part of the Oracle Application Server is susceptible to a denial of service attack. This attack is delivered via a user sending a malformed URL (variations on ".." ) which results in the web server to cease serving requests.
References
Oracle Web Listener Denial of Service Vulnerability
References:
References:
- Oracle Application Server Home Page (Oracle)
- Oracle Support Page (Oracle)