Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet.
References
Configurations
History
20 Nov 2024, 23:34
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=97906670012796&w=2 - | |
References | () http://marc.info/?l=bugtraq&m=98027700625521&w=2 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/5905 - |
Information
Published : 2001-03-12 05:00
Updated : 2024-11-20 23:34
NVD link : CVE-2001-0126
Mitre link : CVE-2001-0126
CVE.ORG link : CVE-2001-0126
JSON object : View
Products Affected
oracle
- oracle8i
CWE