CVE

Id
4952  
CVE No.
CVE-2002-0561  
Status
Candidate  
Description
The default configuration of the PL/SQL Gateway web administration interface in Oracle 9i Application Server 1.0.2.x uses null authentication, which allows remote attackers to gain privileges and modify DAD settings.  
Phase
Proposed (20020611)  
Votes
ACCEPT(4) Alderson, Baker, Cole, Wall | MODIFY(1) Frech | NOOP(2) Cox, Foat  
Comments
Frech> XF:oracle-appserver-plsql-web-interface(8452)