QID 375480
Date Published: 2021-06-30
QID 375480: Oracle HTTP Server Multiple Vulnerabilities(CPUAPR2021)
Oracle HTTP Server is the Web server component for Oracle Fusion Middleware. It provides a listener for Oracle WebLogic Server and the framework for hosting static pages, dynamic pages, and applications over the Web.
Affected Versions:
Oracle HTTP Server, versions 12.2.1.3.0, 12.2.1.4.0
QID Detection Logic (Authenticated):
This QID checks the vulnerable version of Oracle HTTP Server from file "inventory.xml" from the Home Directory.
Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle HTTP Server accessible data.
Solution
Refer to vendor advisory Oracle HTTP Server APR 2021
Vendor References
- cpuapr2021 -
www.oracle.com/security-alerts/cpuapr2021.html
CVEs related to QID 375480
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CPUAPR2021 |
|