Remote Code Execution Vulnerability in Oracle Secure Backup by Oracle
CVE-2009-1978
Currently unrated
What is CVE-2009-1978?
An unspecified vulnerability exists in the Oracle Secure Backup component, specifically affecting version 10.2.0.3. This flaw potentially allows remote attackers to compromise confidentiality, integrity, and availability through various unknown vectors. An independent research claim suggests that remote authenticated users may exploit this vulnerability to execute arbitrary code with SYSTEM privileges, particularly via interactions with the property_box.php script.