PT-2010-2630 · Oracle · Oracle Secure Backup Web Interface

Published

2010-07-13

·

Updated

2012-10-23

·

CVE-2010-0907

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Oracle Secure Backup Web Interface (affected versions not specified)
Description The issue concerns command injection and remote code execution in the Oracle Secure Backup Web Interface. This allows for post-authentication exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2010-0907
ZDI-10-124

Affected Products

Oracle Secure Backup Web Interface