CVE-2008-2138
Oracle Application Server Portal 10g - Unauthenticated Directory Traversal via Trailing %0A
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-2138. PoCs published by Deniz Cevik.
AI-analyzed exploit summary The vulnerability allows an attacker to bypass authentication in Oracle Application Server Portal 10g by exploiting improper access restrictions. By visiting a crafted URL, an attacker can generate a cookie that grants unauthorized access to sensitive portal contents.
Description
Oracle Application Server (OracleAS) Portal 10g allows remote attackers to bypass intended access restrictions and read the contents of /dav_portal/portal/ by sending a request containing a trailing "%0A" (encoded line feed), then using the session ID that is generated from that request. NOTE: as of 20080512, Oracle has not commented on the accuracy of this report.
Exploits (1)
The vulnerability allows an attacker to bypass authentication in Oracle Application Server Portal 10g by exploiting improper access restrictions. By visiting a crafted URL, an attacker can generate a cookie that grants unauthorized access to sensitive portal contents.