Test For Oracle Application Server

By
Jijith Rajan
Published on
02 Jul 2018

Oracle application server was designed to enable scalability of web and database based applications to use more than one database instances. The features of Oracle application server includes deployment model with multiple deployment options, vast availability of methods for web content etc. There are some potential vulnerabilities found in the component of Oracle Application Server. The vulnerabilities may be due to configuration issues associated with the Portal Listener and modplsql or customers grant public access to PL/SQL procedures. These vulnerabilities allow unauthorized access to administrative pages and back-end Oracle databases.

Impact

The impact include:-

  • Reading, updating and deleting arbitrary data/tables from the database

  • Executing commands on the underlying operating system

Mitigation / Precaution

The vulnerabilities can be fixed by:-

  • Using updated patches.
  • Using the latest version of Oracle application server.
Automated human-like penetration testing for your web apps & APIs
Teams using Beagle Security are set up in minutes, embrace release-based CI/CD security testing and save up to 65% with timely remediation of vulnerabilities. Sign up for a free account to see what it can do for you.

Written by
Jijith Rajan
Jijith Rajan
Cyber Security Engineer
Find website security issues in a flash
Improve your website's security posture with proactive vulnerability detection.
Free website security assessment
Experience the power of automated penetration testing & contextual reporting.