CVE Database
/

CVE-2007-0222

Back to search

CVE-2007-0222

Published: Jan 17, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Directory traversal vulnerability in the EmChartBean server side component for Oracle Application Server 10g allows remote attackers to read arbitrary files via unknown vectors, probably "\.." sequences in the beanId parameter. NOTE: this is likely a duplicate of another CVE that Oracle addressed in CPU Jan 2007, but due to lack of details by Oracle, it is unclear which BugID this issue is associated with, so the other CVE cannot be determined. Possibilities include EM02 (CVE-2007-0292) or EM05 (CVE-2007-0293).

VendorProductVersions

n/a

n/a

affected
n/a

References

23794
third-party-advisory
x_refsource_SECUNIA
22083
vdb-entry
x_refsource_BID
22027
vdb-entry
x_refsource_BID
1017522
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now