Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet.
References
Configurations
History
No history.
Information
Published : 2001-03-12 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2001-0126
Mitre link : CVE-2001-0126
CVE.ORG link : CVE-2001-0126
JSON object : View
Products Affected
oracle
- oracle8i
CWE