Oracle E-Business Suite CVE-2009-1982 Remote Oracle Applications Framework Vulnerability
BID:35693
Info
Oracle E-Business Suite CVE-2009-1982 Remote Oracle Applications Framework Vulnerability
| Bugtraq ID: | 35693 |
| Class: | Unknown |
| CVE: |
CVE-2009-1982 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 14 2009 12:00AM |
| Updated: | Jul 15 2009 02:26AM |
| Credit: | Oracle |
| Vulnerable: |
Oracle E-Business Suite 11i 11.5.10.2 Oracle E-Business Suite 12.0.6 |
| Not Vulnerable: | |
Discussion
Oracle E-Business Suite CVE-2009-1982 Remote Oracle Applications Framework Vulnerability
Oracle E-Business Suite is prone to a remote vulnerability in the Applications Framework component.
The vulnerability can be exploited over the 'HTTP' protocol. An attacker doesn't require privileges to exploit this vulnerability.
The following versions of E-Business Suite are affected:
11.5.10.2
12.0.6
Oracle E-Business Suite is prone to a remote vulnerability in the Applications Framework component.
The vulnerability can be exploited over the 'HTTP' protocol. An attacker doesn't require privileges to exploit this vulnerability.
The following versions of E-Business Suite are affected:
11.5.10.2
12.0.6
Exploit / POC
Oracle E-Business Suite CVE-2009-1982 Remote Oracle Applications Framework Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Oracle E-Business Suite CVE-2009-1982 Remote Oracle Applications Framework Vulnerability
Solution:
Vendor updates are available. Please contact the vendor for details.
Solution:
Vendor updates are available. Please contact the vendor for details.
References
Oracle E-Business Suite CVE-2009-1982 Remote Oracle Applications Framework Vulnerability
References:
References:
- E-Business Suite Homepage (Oracle)
- Oracle Critical Patch Update Advisory - July 2009 (Oracle)