Security Advisory

CVE-2002-0561

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2002-06-11 04:00:00
Last updated 2024-08-08 02:56:37
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The default configuration of the PL/SQL Gateway web administration interface in Oracle 9i Application Server 1.0.2.x uses null authentication, which allows remote attackers to gain privileges and modify DAD settings.