2.6 CVE-2004-1877
The p_submit_url value in the sample login form in the Oracle 9i Application Server (9iAS) Single Sign-on Administrators Guide, Release 2(9.0.2) for Oracle SSO allows remote attackers to spoof the login page, which could allow users to inadvertently reveal their username and password.
https://nvd.nist.gov/vuln/detail/CVE-2004-1877
Categories
CWE-NVD-Other
References
BID Patch
10009 Patch Vendor Advisory |
BUGTRAQ
XF
CPE
cpe |
start |
end |
Configuration 1 |
cpe:2.3:a:oracle:application_server:1.0.2:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:1.0.2.1s:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:1.0.2.2:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:1.0.2.2.2:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:9.0.2:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:9.0.2.0.0:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:9.0.2.0.1:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:9.0.2.1:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:9.0.2.2:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:9.0.2.3:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:9.0.3:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:application_server:9.0.3.1:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:http_server:8.1.7:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:http_server:9.0.1:*:*:*:*:*:*:* |
|
|
cpe:2.3:a:oracle:http_server:9.2.0:*:*:*:*:*:*:* |
|
|
Patch
Exploits
Exploit-db.com
id |
description |
date |
|
No known exploits |
Other (github, ...)
CAPEC
id |
description |
severity |
No entry |
Sherlock® flash
Take a picture of your computer network in a few clicks !
The Sherlock® flash audit solution allows you to perform an audit to strengthen the security of your IT assets. Vulnerability analysis of your physical and virtual equipment. Patch planning by priority level and time available. Detailed and intuitive reporting.
Discover this offer