ComputerWorld - Oracle warns of security flaws
"One of the flaws is a buffer overflow vulnerability in an E-Business Suite component called FNDWRR that could let an attacker cause that program to crash, Oracle said. FNDWRR is a Common Gateway Interface program that lets customers view Oracle reports and log files through a Web browser, according to an alert released by Integrigy Corp., the Chicago-based security research firm that discovered the vulnerabilities."
The link address is: http://www.computerworld.com/printthis/2003/0,4814,83424,00.html