CVE Database
/

CVE-2002-1640

Back to search

CVE-2002-1640

Published: Mar 28, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in Oracle Configurator before 11.5.7.17.32 and 11.5.6.16.53 allows remote attackers to inject arbitrary web script or HTML via (1) Text Features in the DHTML UI or (2) the test parameter to the oracle.apps.cz.servlet.UiServlet servlet.

VendorProductVersions

n/a

n/a

affected
n/a

References

1003967
vdb-entry
x_refsource_SECTRACK
4430
vdb-entry
x_refsource_BID
4436
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now