CVE-2001-0528Oracle E-business Suite vulnerability

3 documents3 sources
Severity
7.2HIGHNVD
EPSS
0.5%
top 36.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 14
Latest updateApr 30

Description

Oracle E-Business Suite Release 11i Applications Desktop Integrator (ADI) version 7.x includes a debug version of FNDPUB11I.DLL, which logs the APPS schema password in cleartext in a debug file, which allows local users to obtain the password and gain privileges.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-7qpj-5967-8rc2: Oracle E-Business Suite Release 11i Applications Desktop Integrator (ADI) version 72022-04-30
CVEList
CVE-2001-0528: Oracle E-Business Suite Release 11i Applications Desktop Integrator (ADI) version 72002-03-09
CVE-2001-0528 — Oracle E-business Suite vulnerability | cvebase