CVE-2005-0873

Multiple cross-site scripting (XSS) vulnerabilities in test.jsp in Oracle Reports Server 10g (9.0.4.3.3) allow remote attackers to inject arbitrary web script or HTML via the (1) desname or (2) repprod parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oracle:10g_reports_server:9.0.4.3.3:*:*:*:*:*:*:*

History

20 Nov 2024, 23:56

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=111168323804203&w=2 - () http://marc.info/?l=bugtraq&m=111168323804203&w=2 -
References () http://secunia.com/advisories/17250 - () http://secunia.com/advisories/17250 -
References () http://www.kb.cert.org/vuls/id/210524 - US Government Resource () http://www.kb.cert.org/vuls/id/210524 - US Government Resource
References () http://www.oracle.com/technetwork/topics/security/cpuoct2005-090497.html - () http://www.oracle.com/technetwork/topics/security/cpuoct2005-090497.html -
References () http://www.oracle.com/technology/deploy/security/pdf/public_vuln_to_advisory_mapping.html - () http://www.oracle.com/technology/deploy/security/pdf/public_vuln_to_advisory_mapping.html -
References () http://www.securityfocus.com/bid/12892 - Exploit () http://www.securityfocus.com/bid/12892 - Exploit
References () http://www.securityfocus.com/bid/15134 - () http://www.securityfocus.com/bid/15134 -
References () http://www.us-cert.gov/cas/techalerts/TA05-292A.html - US Government Resource () http://www.us-cert.gov/cas/techalerts/TA05-292A.html - US Government Resource

Information

Published : 2005-05-02 04:00

Updated : 2024-11-20 23:56


NVD link : CVE-2005-0873

Mitre link : CVE-2005-0873

CVE.ORG link : CVE-2005-0873


JSON object : View

Products Affected

oracle

  • 10g_reports_server