7.5
CVSSv2

CVE-2002-0561

Published: 03/07/2002 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The default configuration of the PL/SQL Gateway web administration interface in Oracle 9i Application Server 1.0.2.x uses null authentication, which allows remote malicious users to gain privileges and modify DAD settings.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle application server 1.0.2

oracle application server web cache 2.0.0.0

oracle oracle9i 9.0.1

oracle application server web cache 2.0.0.1

oracle application server web cache 2.0.0.2

oracle oracle8i 8.1.7_.1

oracle oracle9i 9.0

oracle application server web cache 2.0.0.3

oracle oracle8i 8.1.7