
CVE-2002-0563
https://notcve.org/view.php?id=CVE-2002-0563
11 Jun 2002 — The default configuration of Oracle 9i Application Server 1.0.2.x allows remote anonymous users to access sensitive services without authentication, including Dynamic Monitoring Services (1) dms0, (2) dms/DMSDump, (3) servlet/DMSDump, (4) servlet/Spy, (5) soap/servlet/Spy, and (6) dms/AggreSpy; and Oracle Java Process Manager (7) oprocmgr-status and (8) oprocmgr-service, which can be used to control Java processes. • http://marc.info/?l=bugtraq&m=101301813117562&w=2 • CWE-287: Improper Authentication •

CVE-2002-1641
https://notcve.org/view.php?id=CVE-2002-1641
27 May 2002 — Multiple buffer overflows in Oracle Web Cache for Oracle 9i Application Server (9iAS) allow remote attackers to execute arbitrary code via unknown vectors. • http://www.kb.cert.org/vuls/id/291555 •

CVE-2002-0103
https://notcve.org/view.php?id=CVE-2002-0103
15 Mar 2002 — An installer program for Oracle9iAS Web Cache 2.0.0.x creates executable and configuration files with insecure permissions, which allows local users to gain privileges by (1) running webcached or (2) obtaining the administrator password from webcache.xml. El programa de instalación para el Oracle9i Web cache 2.0.0.x crea ejecutables y archivos de configuración con permisos inseguros, que permiten a usuarios locales asignarse privilegios: (1) ejecutar webcache y (2) obtener la contraseña de administrador de ... • http://marc.info/?l=bugtraq&m=101041510727937&w=2 •

CVE-2002-0102
https://notcve.org/view.php?id=CVE-2002-0102
15 Mar 2002 — Oracle9iAS Web Cache 2.0.0.x allows remote attackers to cause a denial of service via (1) a request to TCP ports 1100, 4000, 4001, and 4002 with a large number of null characters, and (2) a request to TCP port 4000 with a large number of "." characters. Oracle9i Web Cache 2.0.0.x permite a atacantes remotos causar una negación de servicio vía: (1) una petición a puertos TCP 1100, 4000, 4001, y 4002 con un número grande de carácteres nulos, (y 2) una petición al puerto 4000 TCP con un número grande de Caráct... • http://otn.oracle.com/deploy/security/pdf/webcache2.pdf •

CVE-2001-0836 – Oracle9iAS Web Cache 2.0 - Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2001-0836
06 Dec 2001 — Buffer overflow in Oracle9iAS Web Cache 2.0.0.1 allows remote attackers to execute arbitrary code via a long HTTP GET request. • https://www.exploit-db.com/exploits/21121 •