Oracle Secure Backup CVE-2010-0904 Remote Authentication Bypass Vulnerability
BID:41608
Info
Oracle Secure Backup CVE-2010-0904 Remote Authentication Bypass Vulnerability
| Bugtraq ID: | 41608 |
| Class: | Input Validation Error |
| CVE: |
CVE-2010-0904 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 13 2010 12:00AM |
| Updated: | Aug 22 2011 10:30AM |
| Credit: | Oracle |
| Vulnerable: |
Oracle Secure Backup 10.3.0.1.0 Oracle Secure Backup 10.2.0.3 Oracle Secure Backup 10.2.0.2 Oracle Secure Backup 10.1.0.3 Oracle Secure Backup 10.1.0.2 Oracle Secure Backup 10.1.0.1 Oracle Secure Backup 0 |
| Not Vulnerable: | |
Discussion
Oracle Secure Backup CVE-2010-0904 Remote Authentication Bypass Vulnerability
Oracle Secure Backup is prone to a remote authentication-bypass vulnerability.
The vulnerability can be exploited to bypass authentication, allowing an attacker to perform unauthorized actions.
This vulnerability affects the following supported versions:
10.3.0.1
Oracle Secure Backup is prone to a remote authentication-bypass vulnerability.
The vulnerability can be exploited to bypass authentication, allowing an attacker to perform unauthorized actions.
This vulnerability affects the following supported versions:
10.3.0.1
Exploit / POC
Oracle Secure Backup CVE-2010-0904 Remote Authentication Bypass Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
Oracle Secure Backup CVE-2010-0904 Remote Authentication Bypass Vulnerability
Solution:
Vendor updates are available. Please contact the vendor for more information.
Solution:
Vendor updates are available. Please contact the vendor for more information.
References
Oracle Secure Backup CVE-2010-0904 Remote Authentication Bypass Vulnerability
References:
References:
- Oracle Critical Patch Update Advisory - July 2010 (Oracle)
- Oracle Secure Backup Administration uname Authentication Bypass Vulnerability (Zero Day Initiative)