CVE-2000-1235

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2000
Last modified:
03/04/2025

Description

The default configurations of (1) the port listener and (2) modplsql in Oracle Internet Application Server (IAS) 3.0.7 and earlier allow remote attackers to view privileged database information via HTTP requests for Database Access Descriptor (DAD) files.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:oracle:application_server:*:*:*:*:*:*:*:* 3.0.7 (including)