Oracle Configurator Test Parameter Cross Site Scripting Vulnerability

An issue has been discovered in Oracle Configurator, which could allow a user to execute code.

Some pages returned by the 'oracle.apps.cz.servlet.UiServlet' servlet may contain user supplied data, allowing cross site scripting attacks.


 

Privacy Statement
Copyright 2010, SecurityFocus