5
CVSSv2

CVE-2005-1382

Published: 03/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The webcacheadmin module in Oracle Webcache 9i allows remote malicious users to corrupt arbitrary files via a full pathname in the cache_dump_file parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle application server web cache

Exploits

source: wwwsecurityfocuscom/bid/13420/info Oracle Application Server 9i Webcache is prone to an arbitrary file corruption vulnerability The issue exists becaue dangerous characters are not removed from a certain parameter value, allowing an attacker to construct a URI that contains an absolute path to any target file If this URI is fo ...