2.1
CVSSv2

CVE-2005-2292

Published: 18/07/2005 Updated: 11/07/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 stores cleartext passwords in (1) IDEConnections.xml, (2) XSQLConfig.xml and (3) settings.xml, which allows local users to obtain sensitive information.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle jdeveloper 9.0.4

oracle jdeveloper 9.0.5

oracle jdeveloper 10.1.2