CVE-2010-0904

Oracle Secure Backup 10.3.0.1 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 3 public exploits for CVE-2010-0904. PoCs published by Metasploit, MC, including Metasploit module auxiliary/admin/oracle/osb_execqr3.

AI-analyzed exploit summary This Metasploit module exploits an authentication bypass in Oracle Secure Backup's login.php and a command injection vulnerability in property_box.php via the 'jlist' parameter. It supports direct command execution or a staged payload for Windows targets.

Description

Unspecified vulnerability in Oracle Secure Backup 10.3.0.1 allows remote attackers to affect integrity via unknown vectors.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubywebappsphp
https://www.exploit-db.com/exploits/17698

This Metasploit module exploits an authentication bypass in Oracle Secure Backup's login.php and a command injection vulnerability in property_box.php via the 'jlist' parameter. It supports direct command execution or a staged payload for Windows targets.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Oracle Secure Backup 10.3.0.1.0
No auth needed
Prerequisites: Network access to TCP/443 on the target · SSL enabled on the target
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC
by MC · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/admin/oracle/osb_execqr3.rb

This Metasploit module exploits an authentication bypass in Oracle Secure Backup's login.php and a command injection vulnerability in property_box.php to execute arbitrary commands. It leverages a crafted POST request to bypass authentication and inject commands via the 'jlist' parameter.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Oracle Secure Backup 10.3.0.1.0 (Win32)
No auth needed
Prerequisites: Network access to the target's HTTP/HTTPS service · Oracle Secure Backup 10.3.0.1.0 with vulnerable endpoints exposed
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC EXCELLENT
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/http/osb_uname_jlist.rb

This Metasploit module exploits an authentication bypass in Oracle Secure Backup's login.php and a command injection vulnerability in property_box.php via the 'jlist' parameter. It allows arbitrary command execution on Windows systems.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Oracle Secure Backup 10.3.0.1.0
No auth needed
Prerequisites: Network access to the target · PHP session token retrieval
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/8354
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/8356

Scores

EPSS 0.8804
EPSS Percentile 99.5%

Details

Status published
Products (1)
oracle/secure_backup 10.3.0.1
Published Jul 13, 2010
Tracked Since Feb 18, 2026