Описание
The PORTAL schema in Oracle Application Server (OracleAS) Discussion Forum Portlet allows remote attackers to obtain the source code for arbitrary JSP and other files via a df_next_page parameter with a trailing null byte (%00).
The PORTAL schema in Oracle Application Server (OracleAS) Discussion Forum Portlet allows remote attackers to obtain the source code for arbitrary JSP and other files via a df_next_page parameter with a trailing null byte (%00).
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2005-4550
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23813
- http://marc.info/?l=full-disclosure&m=113532633229270&w=2
- http://securityreason.com/securityalert/297
- http://securitytracker.com/id?1015406
- http://www.securityfocus.com/bid/16048
- http://www.vupen.com/english/advisories/2005/3085
EPSS
Процентиль: 93%
0.06092
Низкий
CVE ID
Связанные уязвимости
nvd
больше 20 лет назад
The PORTAL schema in Oracle Application Server (OracleAS) Discussion Forum Portlet allows remote attackers to obtain the source code for arbitrary JSP and other files via a df_next_page parameter with a trailing null byte (%00).
EPSS
Процентиль: 93%
0.06092
Низкий