Email us! Subscribe to Liquidmatrix!

Protection Against Oracle Reports Arbitrary File Writing

For you Checkpoint users out there. There is now a SmartDefense update to managed this problem. This one of there better features available in the FW1 stable. I refer to this often as the “buying time” feature. :D

Oracle Reports is an enterprise reporting tool that extracts data from multiple sources and inserts it into a formatted report. Oracle Reports fails to validate URI parameters, possibly allowing a remote attacker to read arbitrary files on the Reports Server.

Article Link

Tags: , ,

Tag It: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Slashdot
  • Technorati
  • SphereIt
  • StumbleUpon
  • Fark
  • YahooMyWeb
  • Furl
  • Spurl
  • Ma.gnolia
  • NewsVine
Related Articles:

  • Oracle Products Multiple Vulnerabilities
  • DVD Copy Protection Hacked…Again
  • Oracle Products Multiple Vulnerabilities
  • Oracle 9i/10g Exploit Posted
  • New Oracle Security Blog
  • Leave a Comment