Vulnerabilities > CVE-2009-1987 - Unspecified vulnerability in Oracle JD Edwards Enterpriseone and Peoplesoft Enterprise
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN oracle
nessus
Summary
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools - Enterprise Portal component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.49.21 allows remote attackers to affect integrity via unknown vectors.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Nessus
NASL family | CGI abuses : XSS |
NASL id | PEOPLESOFT_JMSLCA_ACTIVITY_XSS.NASL |
description | The remote web server is running an instance of PeopleSoft PeopleTools that fails to sanitize user-supplied input to the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 42352 |
published | 2009-10-29 |
reporter | This script is Copyright (C) 2009-2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/42352 |
title | PeopleSoft PeopleTools JMS Listening Connector Activity Parameter XSS |
code |
|
References
- http://osvdb.org/55909
- http://osvdb.org/55909
- http://secunia.com/advisories/35776
- http://secunia.com/advisories/35776
- http://www.oracle.com/technetwork/topics/security/cpujul2009-091332.html
- http://www.oracle.com/technetwork/topics/security/cpujul2009-091332.html
- http://www.securityfocus.com/bid/35691
- http://www.securityfocus.com/bid/35691
- http://www.securitytracker.com/id?1022566
- http://www.securitytracker.com/id?1022566
- http://www.vupen.com/english/advisories/2009/1900
- http://www.vupen.com/english/advisories/2009/1900
- https://exchange.xforce.ibmcloud.com/vulnerabilities/51769
- https://exchange.xforce.ibmcloud.com/vulnerabilities/51769