VYPR

Oracle9iAS

by Oracle Corporation

CVEs (2)

  • CVE-2002-0386Nov 4, 2002
    risk 0.05cvss epss 0.22

    The administration module for Oracle Web Cache in Oracle9iAS (9i Application Suite) 9.0.2 allows remote attackers to cause a denial of service (crash) via (1) an HTTP GET request containing a ".." (dot dot) sequence, or (2) a malformed HTTP GET request with a chunked…

  • CVE-2005-2093Jul 5, 2005
    risk 0.00cvss epss 0.05

    Oracle 9i Application Server (Oracle9iAS) 9.0.2 allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes…