|
|
|
|
| |
Credit:
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-2232
The original article can be found at: http://www.securityfocus.com/bid/48755
|
| |
Vulnerable Systems:
* Oracle11g Standard Edition 11.1 .7
* Oracle11g Standard Edition 11.2.0.1.0
* Oracle11g Enterprise Edition 11.2.0.1.0
* Oracle11g Enterprise Edition 11.1.0.7
* Oracle10g Standard Edition 10.2 .3
* Oracle10g Standard Edition 10.1 .5
* Oracle10g Standard Edition 10.2.0.4
* Oracle10g Personal Edition 10.2 .3
* Oracle10g Personal Edition 10.1 .5
* Oracle10g Personal Edition 10.2.0.4
* Oracle10g Enterprise Edition 10.2 .3
* Oracle10g Enterprise Edition 10.1 .5
* Oracle10g Enterprise Edition 10.2.0.4
* Oracle10g Application Server 10.1.3 .5.0
* Oracle Application Server 10.1.3.5.0
Oracle Application Server is prone to a remote vulnerability in XML Developer Kit. The vulnerability can be exploited over different protocols. For an exploit to succeed, the attacker must have 'Authenticated session' privileges
Vendor Status:
Oracle as issued an update for this vulnerablity
Patch Availability:
http://www.oracle.com/technetwork/topics/security/cpujuly2011-313328.html
CVE Information:
CVE-2011-2232
Disclosure Timeline:
2011-July-19 Rev 1. Initial Release
|
|
|
|
|