CVE-2002-1630Oracle Application Server vulnerability

3 documents3 sources
Severity
7.5HIGHNVD
EPSS
4.7%
top 10.60%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 31
Latest updateApr 30

Description

The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

NVDoracle/application_server5 versions+4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vvgm-hmmj-4xv4: The sendmail2022-04-30
CVEList
CVE-2002-1630: The sendmail2005-03-26