CVE-2009-1008

Oracle Application Server <8.3.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTML, a different vulnerability than CVE-2009-1010.

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1022055
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/34461
Permissions Required third-party-advisory x_refsource_secunia
http://secunia.com/advisories/34693
Third Party Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21660640
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA09-105A.html
Broken Link vdb-entry x_refsource_osvdb
http://osvdb.org/53747

Scores

EPSS 0.0042
EPSS Percentile 34.4%

Details

Status published
Products (8)
ibm/websphere_portal 6.0.0.0
ibm/websphere_portal 6.0.1.0
ibm/websphere_portal 6.1.0.0
ibm/websphere_portal 6.1.5.0
ibm/websphere_portal 7.0.0.0
ibm/websphere_portal 8.0.0.0
oracle/application_server 8.2.2
oracle/application_server 8.3.0
Published Apr 15, 2009
Tracked Since Feb 18, 2026