First published: Fri Mar 15 2002(Updated: )
Oracle9iAS Web Cache 2.0.0.x allows remote attackers to cause a denial of service via (1) a request to TCP ports 1100, 4000, 4001, and 4002 with a large number of null characters, and (2) a request to TCP port 4000 with a large number of "." characters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Application Server Web Cache | =2.0.0.2 | |
Oracle Application Server Web Cache | =2.0.0.2 | |
Oracle Application Server Web Cache | =2.0.0.1 | |
Oracle Application Server Web Cache | =2.0.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0102 is classified as a denial of service vulnerability that affects Oracle9iAS Web Cache 2.0.0.x.
To fix CVE-2002-0102, it is recommended to update Oracle9iAS Web Cache to a version that includes the fix for this vulnerability.
CVE-2002-0102 affects Oracle Application Server Web Cache versions 2.0.0.0, 2.0.0.1, and 2.0.0.2.
CVE-2002-0102 can be exploited by sending specially crafted requests that include a large number of null characters or periods to specific TCP ports.
Yes, CVE-2002-0102 can lead to application downtime due to the denial of service nature of the vulnerability.