First published: Wed Jan 18 2006(Updated: )
Unspecified vulnerability in the Oracle Reports Developer component of Oracle Application Server 9.0.4.2 has unspecified impact and attack vectors, as identified by Oracle Vuln# REP04. NOTE: Oracle has not disputed reliable researcher claims that this issue is related to directory traversal that allows reading of portions of arbitrary XML files via the customize parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Application Server | =9.0.4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2006-0275 is considered to be high due to its potential for directory traversal attacks.
To fix CVE-2006-0275, it is recommended to apply the latest patches for Oracle Application Server version 9.0.4.2.
CVE-2006-0275 specifically affects the Oracle Application Server version 9.0.4.2.
CVE-2006-0275 has unspecified attack vectors but is primarily associated with directory traversal vulnerabilities.
CVE-2006-0275 was identified by reliable researchers and is noted in Oracle's vulnerability reports.