CVE-2008-6869
Oramon 2.0.1 - Unauthenticated Sensitive Information Exposure via Direct Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6869. PoCs published by ahmadbady.
AI-analyzed exploit summary This is a writeup describing a configuration download vulnerability in Oramon, an Oracle Database Monitoring tool. It provides a URL path to access the configuration file but lacks executable exploit code.
Description
Oramon Oracle Database Monitoring Tool 2.0.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for config/oramon.ini.
Exploits (1)
This is a writeup describing a configuration download vulnerability in Oramon, an Oracle Database Monitoring tool. It provides a URL path to access the configuration file but lacks executable exploit code.