OSVDB ID: 40080

Title: Oracle E-Business Suite okxLOV.jsp Unspecified SQL Injection

Info

Disclosure

Oct 31, 2007

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Oct 16, 2007

Description

Classification

Location: Remote / Network Access
Attack Type: Information Disclosure, Input Manipulation
Impact: Loss of Confidentiality, Loss of Integrity
Exploit: Exploit Private
Disclosure: Vendor Verified
OSVDB: Web Related

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, Oracle has released a patch to address this vulnerability.

Products

Unknown or Incomplete

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/40080