Oracle Warehouse Builder SQL Injection
Added: 08/01/2011CVE: CVE-2011-0799
BID: 47431
OSVDB: 71956
Background
Oracle Warehouse Builder (OWB) is an ETL tool produced by Oracle that offers a graphical environment to build, manage and maintain data integration processes in business intelligence systems.Problem
A SQL injection vulnerability exists in Oracle Warehouse Builder versions 10.2.0.5, 11.1.0.7, 11.2.0.1 and prior. An authenticated user with the CONNECT privilege may leverage this vulnerability to remotely compromise the server.Resolution
Apply the April 2011 Oracle Critical Patch Update.References
http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.htmlLimitations
This exploit has been tested against Oracle Business Intelligence Standard Edition One 10.1.3.2.1 on Windows Server 2003 SP2 (DEP OptOut). The exploit requires the login and password to an Oracle account with connect privileges. This exploit must bind to TCP port 80, so it needs root privileges to execute and no other process can be binding to port 80.Platforms
WindowsBack to exploit index