imPC@ndo EN

Tracker / CVE-2019-0227

CVE-2019-0227

Alta 7.5

A Server Side Request Forgery (SSRF) vulnerability affected the Apache Axis 1.4 distribution that was last released in 2006. Security and bug commits commits continue in the projects Axis 1.x Subversion repository, legacy users are encouraged to build from source. The successor to Axis 1.x is Axis2, the latest version is 1.7.9 and is not vulnerable to this issue.

Prodotti e versioni affette

apache axis
oracle agile_engineering_data_management
oracle agile_product_lifecycle_management
oracle application_testing_suite
oracle big_data_discovery
oracle communications_asap_cartridges
oracle communications_design_studio
oracle communications_element_manager
oracle communications_network_integrity
oracle communications_order_and_service_management
oracle communications_session_report_manager
oracle communications_session_route_manager
oracle endeca_information_discovery_studio
oracle enterprise_manager_base_platform
oracle enterprise_manager_for_fusion_middleware
oracle financial_services_analytical_applications_infrastructure · 7.3.3 → 7.3.5
oracle financial_services_analytical_applications_infrastructure · 8.0.0 → 8.0.8
oracle financial_services_compliance_regulatory_reporting · 8.0.6 → 8.0.8
oracle financial_services_funds_transfer_pricing · 8.0.2 → 8.0.7
oracle flexcube_core_banking
oracle flexcube_private_banking
oracle hospitality_guest_access
oracle instantis_enterprisetrack
oracle internet_directory
oracle knowledge · 8.6.0 → 8.6.3
oracle peoplesoft_enterprise_human_capital_management_human_resources
oracle peoplesoft_enterprise_peopletools
oracle policy_automation_connector_for_siebel
oracle primavera_gateway
oracle primavera_unifier
oracle primavera_unifier · 17.7 → 17.12
oracle rapid_planning
oracle real-time_decision_server
oracle retail_order_broker
oracle retail_xstore_point_of_service
oracle secure_global_desktop
oracle siebel_ui_framework · … → 21.0
oracle tuxedo
oracle webcenter_portal

Analisi

Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.

Riferimenti