Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet.
References
Configurations
History
03 Apr 2025, 01:03
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=97906670012796&w=2 - | |
References | () http://marc.info/?l=bugtraq&m=98027700625521&w=2 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/5905 - |
Information
Published : 2001-03-12 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2001-0126
Mitre link : CVE-2001-0126
CVE.ORG link : CVE-2001-0126
JSON object : View
Products Affected
oracle
- oracle8i
CWE