First published: Mon Nov 03 2003(Updated: )
Multiple SQL injection vulnerabilities in the Portal DB (1) List of Values (LOVs), (2) Forms, (3) Hierarchy, and (4) XML components packages in Oracle Oracle9i Application Server 9.0.2.00 through 3.0.9.8.5 allow remote attackers to execute arbitrary SQL commands via the URL.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Oracle9i | =9.0.2.2 | |
Oracle Oracle9i | =9.0.2 | |
Oracle Application Server Portal | =9.0.2.3b | |
Oracle Application Server Portal | =3.0.9.8.5 | |
Oracle Application Server Portal | =9.0.2.3 | |
Oracle Application Server Portal | =9.0.2.3a | |
Oracle Oracle9i | =9.0.2.0.0 | |
Oracle Oracle9i | =9.0.2.1 | |
Oracle Oracle9i | =9.0.2.3 | |
Oracle Oracle9i | =9.0.2.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.