First published: Wed Mar 15 2000(Updated: )
Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Application Server | =4.0 | |
=4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0169 is a critical vulnerability that allows remote command execution.
To fix CVE-2000-0169, it's recommended to upgrade to a patched version of Oracle Application Server.
CVE-2000-0169 specifically affects Oracle Application Server version 4.0.
Yes, CVE-2000-0169 can be exploited remotely through specially crafted URLs.
CVE-2000-0169 can facilitate unauthorized command execution on the affected systems.