RULE(RULE ID:306882)

Rule General Information
Release Date: 2016-07-15
Rule Name: Oracle Database Application Express Component APEX Password Hash Disclosure Vulnerability (CVE-2009-0981)
Severity:
CVE ID:
Rule Protection Details
Description: Unspecified vulnerability in the Application Express component in Oracle Database 11.1.0.7 allows remote authenticated users to affect confidentiality, related to APEX.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows, Other Unix, FreeBSD, Linux
Reference: SecurityFocusBID:34461
ExploitDB:8456
http://www.oracle.com/technetwork/topics/security/cpuapr2009-099563.html
http://www.red-database-security.com/advisory/apex_password_hashes.html
Solutions
More advisories have been published on the website, please visit for more suggestions:
http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2009.html