CVE-2005-2291

Currently unrated

Key Information:

Vendor
Oracle
Vendor
CVE Published:
18 July 2005

Summary

Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 passes the cleartext password as a parameter when starting sqlplus, which allows local users to gain sensitive information.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.