PeopleSoft PeopleTools 8.1x, 8.2x, and 8.4x allows remote attackers to execute arbitrary commands by uploading a file to the IClient Servlet, guessing the insufficiently random (system time) name of the directory used to store the file, and directly requesting that file.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2003-12-14 21:00
Updated : 2017-07-10 18:29
NVD link : CVE-2003-0950
Mitre link : CVE-2003-0950
JSON object : View
CWE
Products Affected
peoplesoft
- peopletools