Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The webcacheadmin module in Oracle Webcache 9i allows remote attackers to corrupt arbitrary files via a full pathname in the cache_dump_file parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Oracle Application Server 9i Webcache任意文件破坏漏洞
Vulnerability Description
Oracle应用服务器是一个综合解决方案,用于开发、集成和部署企业的应用系统、门户和网站。 Oracle Application Server 9i Webcache中存在任意文件破坏漏洞,起因是没有删除某些参数值中的危险字符,这样攻击者就可以创建包含有到任意目标文件绝对路径的URI。如果有足够权限的用户跟随了这个URI的话,就可能在指定的文件后附加垃圾数据。
CVSS Information
N/A
Vulnerability Type
N/A