Oracle.AutoVue.ActiveX.SaveViewStateToFile.Remote.File.Creation
Description
This indicates an attack attempt against an Arbitrary File Creation vulnerability in Oracle AutoVue ActiveX control.
The vulnerability is caused by the application's failure to sanitize user supplied input. A successful attack may allow the attacker to create arbitrary files in the context of the currently logged-on user.
Affected Products
Oracle AutoVue 20.0.1
Impact
System Compromise: Remote attackers can gain control of vulnerable systems.
Recommended Actions
Currently we are not aware of any vendor-supplied patches.
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |