Vulnerabilities > CVE-2005-4550 - Unspecified vulnerability in Oracle Application Server Discussion Forum Portlet

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
oracle
exploit available

Summary

The PORTAL schema in Oracle Application Server (OracleAS) Discussion Forum Portlet allows remote attackers to obtain the source code for arbitrary JSP and other files via a df_next_page parameter with a trailing null byte (%00).

Vulnerable Configurations

Part Description Count
Application
Oracle
1

Exploit-Db

descriptionOracle Application Server Discussion Forum Portlet Multiple Remote Vulnerabilities. CVE-2005-4550. Webapps exploit for jsp platform
idEDB-ID:26972
last seen2016-02-03
modified2005-12-23
published2005-12-23
reporterJohannes Greil
sourcehttps://www.exploit-db.com/download/26972/
titleoracle application server discussion forum portlet Multiple Vulnerabilities