Oracle

Jdeveloper

42 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.51%
  • Veröffentlicht 18.07.2005 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:14:37

Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 passes the cleartext password as a parameter when starting sqlplus, which allows local users to gain sensitive information.

  • EPSS 0.87%
  • Veröffentlicht 18.07.2005 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:14:37

Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 stores cleartext passwords in (1) IDEConnections.xml, (2) XSQLConfig.xml and (3) settings.xml, which allows local users to obtain sensitive information.