First published: Wed Apr 27 2005(Updated: )
OneWorldStore allows remote attackers to cause a denial of service (application crash) via a direct request to owConnections/chksettings.asp.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JD Edwards OneWorld | =basic | |
Oracle JD Edwards OneWorld | =soho | |
Oracle JD Edwards OneWorld | =free | |
Oracle JD Edwards OneWorld | =enterprise | |
Oracle JD Edwards OneWorld | =business |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1328 has a severity rating of medium due to its potential to cause a denial of service.
CVE-2005-1328 allows attackers to send a direct request to owConnections/chksettings.asp, which can cause the application to crash.
CVE-2005-1328 affects the basic, soho, free, enterprise, and business editions of OneWorldStore.
Mitigation for CVE-2005-1328 can be achieved by applying any available patches or updates from OneWorldStore.
Yes, a permanent fix for CVE-2005-1328 involves upgrading to the latest version of the OneWorldStore software.