CVE Database
/

CVE-2008-5446

Back to search

CVE-2008-5446

Published: Jan 14, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10 CU2 and 12.0.6 allows remote authenticated users to affect confidentiality via unknown vectors. NOTE: the previous information was obtained from the January 2009 CPU. Oracle has not commented on reliable researcher claims that this issue is related to unrestricted guest access to the "About Us Page" in the Oracle Applications Framework (OAF), which allows attackers to obtain sensitive system and application environment information.

VendorProductVersions

n/a

n/a

affected
n/a

References

33525
third-party-advisory
x_refsource_SECUNIA
ADV-2009-0115
vdb-entry
x_refsource_VUPEN
33177
vdb-entry
x_refsource_BID
1021568
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now