Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
A New Class of Vulnerability in Oracle: Lateral SQL Injection Apr 24 2008 04:49PM
David Litchfield (davidl ngssoftware com)
Hey all,
I've just released some research that demonstrates a new class of
vulnerability in Oracle and how it can be exploited by an attacker. You can
grab the paper from here:
http://www.databasesecurity.com/dbsec/lateral-sql-injection.pdf
Cheers,
David Litchfield
NGSSoftware Ltd
http://www.ngssoft...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus