cbcvebase.
CVE-2002-0568
published 2002-07-03

CVE-2002-0568: Oracle 9i Application Server stores XSQL and SOAP configuration files insecurely, which allows local users to obtain sensitive information including usernames…

PriorityP424low2.1CVSS 2.0
AVLACLAuNCPINAN
EPSS
75.18%
99.5th percentile
Oracle 9i Application Server stores XSQL and SOAP configuration files insecurely, which allows local users to obtain sensitive information including usernames and passwords by requesting (1) XSQLConfig.xml or (2) soapConfig.xml through a virtual directory.

Affected

5 ranges
VendorProductVersion rangeFixed in
oracleapplication_server
oracleoracle8i
oracleoracle8i
oracleoracle9i
oracleoracle9i
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.