Vulnerabilities > CVE-2011-0836 - Unspecified vulnerability in Oracle products

047910
CVSS 3.5 - LOW
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
SINGLE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
oracle
exploit available

Summary

Unspecified vulnerability in Oracle JD Edwards EnterpriseOne Tools 8.9 GA through 8.98.4.1 and OneWorld Tools through 24.1.3 allows remote authenticated users to affect integrity, related to Web Runtime SEC.

Exploit-Db

  • descriptionOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/E1Menu_Menu.mafService e1.namespace Parameter XSS. CVE-2011-0836. Remote exploits for multipl...
    idEDB-ID:35639
    last seen2016-02-04
    modified2011-04-19
    published2011-04-19
    reporterJuan Manuel Garcia
    sourcehttps://www.exploit-db.com/download/35639/
    titleOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/E1Menu_Menu.mafService e1.namespace Parameter XSS
  • descriptionOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/E1Menu.maf jdeowpBackButtonProtect Parameter XSS. CVE-2011-0836. Remote exploits for multiple...
    idEDB-ID:35638
    last seen2016-02-04
    modified2011-04-19
    published2011-04-19
    reporterJuan Manuel Garcia
    sourcehttps://www.exploit-db.com/download/35638/
    titleOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/E1Menu.maf jdeowpBackButtonProtect Parameter XSS
  • descriptionOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/E1Menu_OCL.mafService e1.namespace Parameter XSS. CVE-2011-0836. Remote exploits for multiple...
    idEDB-ID:35640
    last seen2016-02-04
    modified2011-04-19
    published2011-04-19
    reporterJuan Manuel Garcia
    sourcehttps://www.exploit-db.com/download/35640/
    titleOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/E1Menu_OCL.mafService e1.namespace Parameter XSS
  • descriptionOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/JASMafletMafBrowserClose.mafService jdemafjasLinkTarget Parameter XSS. CVE-2011-0836. Remote ...
    idEDB-ID:35642
    last seen2016-02-04
    modified2011-04-19
    published2011-04-19
    reporterJuan Manuel Garcia
    sourcehttps://www.exploit-db.com/download/35642/
    titleOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/JASMafletMafBrowserClose.mafService jdemafjasLinkTarget Parameter XSS
  • descriptionOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/MafletClose.mafService RENDER_MAFLET Parameter XSS. CVE-2011-0836. Remote exploits for multip...
    idEDB-ID:35641
    last seen2016-02-04
    modified2011-04-19
    published2011-04-19
    reporterJuan Manuel Garcia
    sourcehttps://www.exploit-db.com/download/35641/
    titleOracle JD Edwards EnterpriseOne 8.9x Tools Web Runtime SEC /jde/MafletClose.mafService RENDER_MAFLET Parameter XSS

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/100649/cybsecoraclejd-xss.txt
idPACKETSTORM:100649
last seen2016-12-05
published2011-04-21
reporterJuan Manuel Garcia
sourcehttps://packetstormsecurity.com/files/100649/Oracle-JD-Edwards-EnterpriseOne-Cross-Site-Scripting.html
titleOracle JD Edwards EnterpriseOne Cross Site Scripting