VYPR
Unrated severityNVD Advisory· Published Apr 1, 2002· Updated Apr 16, 2026

CVE-2002-1639

CVE-2002-1639

Description

Oracle Configurator before 11.5.7.17.32 and 11.5.6.16.53 allows remote attackers to obtain sensitive information via a request to the oracle.apps.cz.servlet.UiServlet servlet with the test parameter set to "version" or "host".

Affected products

2
  • cpe:2.3:a:oracle:configurator:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:oracle:configurator:*:*:*:*:*:*:*:*range: >=11.5.6.0.0,<=11.5.6.16.53
    • cpe:2.3:a:oracle:configurator:11i:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.