Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet.
References
Configurations
Information
Published : 2001-03-11 21:00
Updated : 2017-10-09 18:29
NVD link : CVE-2001-0126
Mitre link : CVE-2001-0126
JSON object : View
CWE
Products Affected
oracle
- oracle8i