Short Name |
HTTP:ORACLE:OUTSIDE-IN-PRDOX-BO |
---|---|
Severity |
Major |
Recommended |
No |
Category |
HTTP |
Keywords |
Oracle Outside In Paradox Database Handling Buffer Overflow |
Release Date |
2013/02/11 |
Update Number |
2232 |
Supported Platforms |
idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability in Oracle Outside In. A successful attack could allow the attacker to execute arbitrary code on the targeted system. Failed exploit attempts could result in a denial of service condition.
Per: http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.html#AppendixFMW '2. Outside In Technology is a suite of software development kits (SDKs). It does not have any particular associated protocol. If the hosting software passes data received over the network to Outside In Technology code, the CVSS score would increase to 6.8.'