Vulnerable Systems:
* Oracle Database Server 10.1.0.5,
* Oracle Database Server 10.2.0.3,
* Oracle Database Server 10.2.0.4,
* Oracle Database Server 11.1.0.7,
* Oracle Database Server 11.2.0.1,
* Oracle Fusion Middleware 10.1.3.5
Oracle Application Server is prone to a remote vulnerability in XML Developer Kit.
The vulnerability can be exploited over different protocols. For an exploit to succeed, the attacker must have 'Authenticated session' privileges.
Vendor Status:
Oracle as issued an update for this vulnerablity