CVE-2005-3449
Last modified
CVE-2005-3449 is a vulnerability of currently unknown severity. Multiple unspecified vulnerabilities in Oracle Application Server 9.0 up to 10.1.2.0 have unknown impact and attack vectors, as identified by Oracle Vuln# (1) AS02 in Containers for J2EE, (2) AS07 in Internet Directory, (3) AS09 in Report Server, and (4) AS11 in Web Cache.. EPSS estimates a 5.75% chance of exploitation in the next 30 days.
Description
Multiple unspecified vulnerabilities in Oracle Application Server 9.0 up to 10.1.2.0 have unknown impact and attack vectors, as identified by Oracle Vuln# (1) AS02 in Containers for J2EE, (2) AS07 in Internet Directory, (3) AS09 in Report Server, and (4) AS11 in Web Cache.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Application Server | 9.0 |
| Oracle | Application Server | 9.0.2.3 |
| Oracle | Application Server | 9.0.3.1 |
| Oracle | Application Server | 9.0.4.1 |
| Oracle | Application Server | 9.0.4.2 |
| Oracle | Application Server | 10.1.2.0.0 |
| Oracle | Application Server | 10.1.2.0.1 |
| Oracle | Application Server | 10.1.2.0.2 |
References
- http://www.kb.cert.org/vuls/id/210524US Government Resource
- http://www.kb.cert.org/vuls/id/376756US Government Resource
- http://www.kb.cert.org/vuls/id/512716US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-292A.htmlUS Government Resource
- http://www.kb.cert.org/vuls/id/210524US Government Resource
- http://www.kb.cert.org/vuls/id/376756US Government Resource
- http://www.kb.cert.org/vuls/id/512716US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-292A.htmlUS Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-3449?
How severe is CVE-2005-3449?
How do I fix CVE-2005-3449?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-3443Unspecified vulnerability in the Spatial component in Oracle…
- CVE-2005-3444Multiple unspecified vulnerabilities in the Programmatic Int…
- CVE-2005-3445Multiple unspecified vulnerabilities in HTTP Server in Oracl…
- CVE-2005-3446Unspecified vulnerability in Internet Directory in Oracle Da…
- CVE-2005-3447Unspecified vulnerability in Single Sign-On in Oracle Databa…
- CVE-2005-3448Unspecified vulnerability in the OC4J Module in Oracle Appli…
- CVE-2005-3450Unspecified vulnerability in the HTTP Server in Oracle Appli…
- CVE-2005-3451Unspecified vulnerability in SQL*ReportWriter in Oracle Appl…
- CVE-2005-3452Unspecified vulnerability in Web Cache in Oracle Application…
- CVE-2005-3453Multiple unspecified vulnerabilities in Web Cache in Oracle …
- CVE-2005-3454Multiple unspecified vulnerabilities in Oracle Collaboration…
- CVE-2005-3455Multiple unspecified vulnerabilities in Oracle E-Business Su…
Are you affected by CVE-2005-3449?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
