6.8
CVSSv2

CVE-2005-1381

Published: 03/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 690
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in Oracle Webcache 9i allow remote malicious users to inject arbitrary web script or HTML via the (1) cache_dump_file or (2) PartialPageErrorPage parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle application server web cache

Exploits

source : wwwsecurityfocuscom/bid/13421/info A remote cross-site scripting vulnerability affects the Oracle Application Server 9i Webcache administration console This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in dynamically generated Web content The issue affects the 'cac ...
source: wwwsecurityfocuscom/bid/13422/info A remote cross-site scripting vulnerability affects the Oracle Application Server 9i Webcache administration console This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in dynamically generated Web content The issue affects the 'Part ...