CVE Database
/

CVE-2002-0386

Back to search

CVE-2002-0386

Published: Oct 29, 2002

Modified: Aug 8, 2024

PUBLISHED

Description

The administration module for Oracle Web Cache in Oracle9iAS (9i Application Suite) 9.0.2 allows remote attackers to cause a denial of service (crash) via (1) an HTTP GET request containing a ".." (dot dot) sequence, or (2) a malformed HTTP GET request with a chunked Transfer-Encoding with missing data.

VendorProductVersions

n/a

n/a

affected
n/a

References

A102802-1
vendor-advisory
x_refsource_ATSTAKE
5902
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now