Back to search
CVE-2007-2170
Published: Apr 24, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
The APPLSYS.FND_DM_NODES package in Oracle E-Business Suite does not check for valid sessions, which allows remote attackers to delete arbitrary nodes. NOTE: due to lack of details from Oracle, it is not clear whether this issue is related to other CVE identifiers such as CVE-2007-2126, CVE-2007-2127, or CVE-2007-2128.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
2611
third-party-advisory
x_refsource_SREASON
20070418 ZDI-07-016: Oracle E-Business Suite Arbitrary Node Deletion Vulnerability
mailing-list
x_refsource_BUGTRAQ
39958
vdb-entry
x_refsource_OSVDB
http://www.zerodayinitiative.com/advisories/ZDI-07-016.html
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now