Oracle9iAS Portal Component SQL...

- AV AC AU C I A
发布: 2003-11-03
修订: 2025-04-13

It has been reported that Oracle9i application server is prone to a SQL injection vulnerability that may allow a remote attacker to inject malicious SQL syntax into database queries through a URL. The cause of this problem is due to insufficient sanitization of user-supplied data. An attacker may be able to exploit this issue to influence SQL query logic. Successful exploitation may disclose sensitive information about the underlying database to an attacker, which may be used to launch further attacks against a vulnerable system.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息