This vulnerability, caused by a set of unsecured Java Server Pages, allows any user to view the product's configuration and host-system information.
Impact
It can be exploited to remotely retrieve sensitive configuration and host information without authentication.
The Oracle Applications Self-Service Framework is the foundation for self-service HRMS, iProcurement, iExpenses, and other web applications. A Test Suite, implemented as JSP, verifies the installation and configuration of OA Framework. The main JSP page is "aoljtest.jsp". The A
CERT-IN - Computer Emergency Response Team - Page Requested Currently Not available
CERT-IN - Computer Emergency Response Team - Page Requested Currently Not available