clusterd icon indicating copy to clipboard operation
clusterd copied to clipboard

{feature request} CVE-2014-4278/oracle support?

Open thsle3p opened this issue 11 years ago • 1 comments

A pretty severe RCE vulnerability was disclosed in Oracle's Forms 10g server that looks like it would be trivial to implement in clusterd (https://www.netspi.com/blog/entryid/243/advisory-oracle-forms-10g-unauthenticated-remote-code-execution-cve-2014-4278). Also I would think this would be a good time to take a look at what other modules related to Oracle application servers that could be implemented in clusterd (SMB hash aux modules, other exploits, etc).

thsle3p avatar Oct 16 '14 04:10 thsle3p

I did see this, but I need to investigate Oracle Forms a bit more to determine if it's something that would fit into clusterd. Oracle Fusion definitely is, but I'm not too familiar with Oracle Forms.

I'll be looking into this, thanks!

hatRiot avatar Oct 16 '14 15:10 hatRiot