Vulnerabilities > CVE-2005-1381 - Cross-Site Scripting vulnerability in Oracle Application Server 9i Webcache Cache_dump_file
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Multiple cross-site scripting (XSS) vulnerabilities in Oracle Webcache 9i allow remote attackers to inject arbitrary web script or HTML via the (1) cache_dump_file or (2) PartialPageErrorPage parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description Oracle Application Server 9i Webcache Cache_dump_file Cross-Site Scripting Vulnerability. CVE-2005-1381. Remote exploits for multiple platform id EDB-ID:25562 last seen 2016-02-03 modified 2005-04-28 published 2005-04-28 reporter Alexander Kornbrust source https://www.exploit-db.com/download/25562/ title Oracle Application Server 9i Webcache Cache_dump_file Cross-Site Scripting Vulnerability description Oracle Application Server 9i Webcache PartialPageErrorPage Cross-Site Scripting Vulnerability. CVE-2005-1381. Remote exploits for multiple platform id EDB-ID:25563 last seen 2016-02-03 modified 2005-04-28 published 2005-04-28 reporter Alexander Kornbrust source https://www.exploit-db.com/download/25563/ title Oracle Application Server 9i Webcache PartialPageErrorPage Cross-Site Scripting Vulnerability
Nessus
NASL family | Databases |
NASL id | ORACLE_WEB_CACHE_9I_MULTIPLE_VULNS.NASL |
description | According to its banner, the version of Oracle Application Server 9i Webcache installed on the remote host suffers from several flaws: - Arbitrary File Corruption Vulnerability An attacker may be able to corrupt arbitrary files on the remote host by passing the filenames through the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 18175 |
published | 2005-05-02 |
reporter | This script is Copyright (C) 2005-2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/18175 |
title | Oracle Application Server 9i Webcache < 9.0.4.0 Multiple Vulnerabilities |
code |
|
References
- http://marc.info/?l=bugtraq&m=111472423409560&w=2
- http://secunia.com/advisories/15143
- http://www.osvdb.org/15910
- http://www.red-database-security.com/advisory/oracle_webcache_CSS_vulnerabilities.html
- http://www.securityfocus.com/bid/13421
- http://www.securityfocus.com/bid/13422
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20309