This module exploits a command injection error in the Oracle Secure Backup Administration server. The error is located on the exec_qr function, called from the login.php page. CVE Link CVE-2008-5449 Exploit Platform Linux Windows Exploit Type Exploits Remote Product Name Impact