Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Databases >> Oracle 9iAS mod_plsql cross site scripting


Vulnerability Assessment Details

Oracle 9iAS mod_plsql cross site scripting

Vulnerability Assessment Summary
Tests for Oracle 9iAS mod_plsql cross site scripting

Detailed Explanation for this Vulnerability Assessment

The mod_plsql module supplied with Oracle9iAS permits cross site scripting
attacks to be performed.

Solution:

Patches which address several vulnerabilities in Oracle 9iAS can be
downloaded from the oracle Metalink site.

References:
http://www.nextgenss.com/papers/hpoas.pdf (Hackproofing Oracle9iAS)
http://www.oracle.com/

Network Security Threat Level: High

Networks Security ID: 4298

Vulnerability Assessment Copyright: This script is Copyright (C) 2002 Matt Moore

Cables, Connectors

Dell SNPH132MC/8G 8GB 2Rx4 PC3-8500R DDR3 1066MHz DIMM Server Memory RAM
$19.5
Dell SNPH132MC/8G 8GB 2Rx4 PC3-8500R DDR3 1066MHz DIMM Server Memory RAM pictureHP 603718-B21 ProLiant BL460c G7 CTO Blade Server Base Model
$26.5
HP 603718-B21 ProLiant BL460c G7 CTO Blade Server Base Model pictureSun V210 1.34GHz, 512Mb, 73Gb disk drive + 90 day warranty
$175.0
Sun V210 1.34GHz, 512Mb, 73Gb disk drive + 90 day warranty pictureSophos UTM 220 Firewall Server
$50.0
Sophos UTM 220 Firewall Server picture


Discussions

No Discussions have been posted on this vulnerability.