7.5
CVSSv2

CVE-2002-1631

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote malicious users to execute arbitrary code via the sql parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle application server 9.0.2.0.0

oracle application server 1.0.2

oracle application server 1.0.2.1s

oracle application server 1.0.2.2

oracle application server 9.0.2.0.1