Oracle9i Lite Unspecified Vulnerability
SECUNIA ADVISORY ID:
SA10938
VERIFY ADVISORY:
http://secunia.com/advisories/10938/
CRITICAL:
Moderately critical
IMPACT:
Security Bypass
WHERE:
From local network
SOFTWARE:
Oracle9i Lite
DESCRIPTION:
Oracle has issued updates for Oracle9i Lite. These fix an unspecified vulnerability, allowing authenticated users to gain access to a connected Oracle database server.
Successful exploitation requires that the Oracle9i Lite Mobile Server is installed.
Oracle 9i Lite versions 5.0.0.0.0 through 5.0.2.9.0 are vulnerable.
SOLUTION:
Patches are available, see Metalink Document ID 261992.1:
http://metalink.oracle.com/
PROVIDED AND/OR DISCOVERED BY:
Alexander Kornbrust
ORIGINAL ADVISORY:
http://otn.oracle.com/deploy/security/pdf/2004alert63.pdf
For further details and links please click here to see the actual Secunia Advisory: http://secunia.com/advisories/10938/
