Unrated severityNVD Advisory· Published Apr 1, 2002· Updated Apr 16, 2026
CVE-2002-1639
CVE-2002-1639
Description
Oracle Configurator before 11.5.7.17.32 and 11.5.6.16.53 allows remote attackers to obtain sensitive information via a request to the oracle.apps.cz.servlet.UiServlet servlet with the test parameter set to "version" or "host".
Affected products
2cpe:2.3:a:oracle:configurator:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:oracle:configurator:*:*:*:*:*:*:*:*range: >=11.5.6.0.0,<=11.5.6.16.53
- cpe:2.3:a:oracle:configurator:11i:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- securitytracker.com/idnvdPatchThird Party AdvisoryVDB Entry
- www.kb.cert.org/vuls/id/158323nvdPatchThird Party AdvisoryUS Government Resource
- www.oracle.com/technology//deploy/security/htdocs/oconfigvul.htmlnvdPatch
- www.securityfocus.com/bid/4433nvdThird Party AdvisoryVDB EntryVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/8782nvdVDB Entry
News mentions
0No linked articles in our index yet.