Multiple cross-site scripting (XSS) vulnerabilities in Oracle Reports 9.0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) debug parameter to showenv, (2) test parameter to parsequery, or (3) delimiter or (4) CELLWRAPPER parameter to rwservlet.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2005-07-26T04:00:00

Updated: 2016-10-17T13:57:01

Reserved: 2005-07-26T00:00:00


Link: CVE-2005-2379

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2005-07-26T04:00:00.000

Modified: 2016-10-18T03:26:33.483


Link: CVE-2005-2379

JSON object: View

cve-icon Redhat Information

No data.