PeopleSoft PeopleTools 8.1x, 8.2x, and 8.4x allows remote attackers to execute arbitrary commands by uploading a file to the IClient Servlet, guessing the insufficiently random (system time) name of the directory used to store the file, and directly requesting that file.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2003-12-15 05:00
Updated : 2024-02-28 10:24
NVD link : CVE-2003-0950
Mitre link : CVE-2003-0950
CVE.ORG link : CVE-2003-0950
JSON object : View
Products Affected
peoplesoft
- peopletools
CWE