CVE-2006-0275: Medium severity Oracle Application Server vulnerability
Unspecified vulnerability in the Oracle Reports Developer component of Oracle Application Server 9.0.4.2 has unspecified impact and attack vectors, as identified by Oracle Vuln# REP04. NOTE: Oracle has not disputed reliable researcher claims that this issue is related to directory traversal that allows reading of portions of arbitrary XML files via the customize parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0275?
The severity of CVE-2006-0275 is considered to be high due to its potential for directory traversal attacks.
How do I fix CVE-2006-0275?
To fix CVE-2006-0275, it is recommended to apply the latest patches for Oracle Application Server version 9.0.4.2.
What application is affected by CVE-2006-0275?
CVE-2006-0275 specifically affects the Oracle Application Server version 9.0.4.2.
What types of attacks are associated with CVE-2006-0275?
CVE-2006-0275 has unspecified attack vectors but is primarily associated with directory traversal vulnerabilities.
Who identified CVE-2006-0275?
CVE-2006-0275 was identified by reliable researchers and is noted in Oracle's vulnerability reports.