Community-Credit.com | NonProfitWays.com | SOAPitstop.com   Skin:   
      User: Not logged in 
Home
Newsletter Signup
XSLT Library
Latest XML Blogs
Featured Examples
Presentations
Featured Articles
Book Chapters
Training Courses
Events
NewsGroups
 
Discussions
Examples
Tutorials
Tools
Articles
Resources
Websites
 
Sign In
My Profile
My Articles
My Examples
My Favorites
My Resources
Add a Resource
Logout
 
About Me
My Blog
HeadGeek Articles
Talking Portfolio
Resume
Pictures
World Trip Pics

Please give your rating of the following resource...

Rules of the House
  • Please do not vote more than once per resource
  • Please submit a variety of ratings so that resources get ratings other than just 1's and 10's

Title:

Oracle 9iAS XSQL Servlet File Permission Bypass Vulnerability

 

Description:

Oracle 9iAS package includes the XSQL Servlet as part of the XML Development kit. It may be used to convert the response from an SQL query into an XML format. Reportedly, the servlet does not properly enforce file permissions. An attacker may be able to exploit this vulnerability to view sensitive system configuration files, similar to the issues discussed in BID 4290.

 

URL:

http://www.xatrix.org/article1250.html


Rating:
 

 
Fans of "The Office"
Dwight Bobbleheads are here!

  “It's me! I'm the bobblehead! Yes!”



Advertise on XMLPitstop

Advertise on XMLPitstop


EggHead Cafe
Web Servicee development
DotNetSlackers
web conferencing
email fax service
SPOC
Ink refills
Conference Call
Video Surveillance
Klimaneutrales Webhosting
VoIP Internettelefonie DE

2,848 Total Members
29 members(last 30 days)
4 members(last 7 days)
0 members(today)

1,906 Total Discussions
7 Posts(last 30 days)
3 Posts(last 7 days)
0 Posts(today)

47,487 Total Blog Posts
0 Blogs(last 30 days)
0 Blogs(last 7 days)
0 Blogs(today)

8,699 Newsgroup Posts
0 Posts(last 30 days)
0 Posts(last 7 days)
0 Posts(today)

14,057 Total Resources
9 Resources(last 30 days)
8 Resources(last 7 days)
0 Resources(today)