Back to search
CVE-2003-1573
Published: Jun 1, 2009
Modified: Aug 8, 2024
PUBLISHED
Description
The PointBase 4.6 database component in the J2EE 1.4 reference implementation (J2EE/RI) allows remote attackers to execute arbitrary programs, conduct a denial of service, and obtain sensitive information via a crafted SQL statement, related to "inadequate security settings and library bugs in sun.* and org.apache.* packages."
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20040118 Proof-Of-Concept Denial-Of-Service Pointbase 4.6 Java SQL-DB
mailing-list
x_refsource_BUGTRAQ
10460
third-party-advisory
x_refsource_SECUNIA
20040118 Proof-Of-Concept Denial-Of-Service Pointbase 4.6 Java SQL-DB
mailing-list
x_refsource_FULLDISC
j2ee-pointbase-sql-injection(14008)
vdb-entry
x_refsource_XF
1008491
vdb-entry
x_refsource_SECTRACK
9230
vdb-entry
x_refsource_BID
pointbase-command-execution(14883)
vdb-entry
x_refsource_XF
pointbase-information-disclosure(14882)
vdb-entry
x_refsource_XF
20031216 J2EE 1.4 reference implementation: database component allows remote code execution
mailing-list
x_refsource_BUGTRAQ
pointbase-insecure-permissions-dos(14881)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now