|
Oracle RDC Onsite XSS VulnerabilityOctober 18, 2011;
Michael Schmidt from Compass Security identified a vulnerability in an Oracle product. It is possible to insert JavaScript code into the search form of the RDC Onsite Help form. This JavaScript code is returned to the user without critical characters being replaced to their corresponding HTML entities. Oracle confirmed this vulnerability and released a patch. Oracle Tracking ID: 18244549 Advisory Date: 2011-10-18
|
News HTML5 Web Security Review BlackHat / Defcon 2011 Oracle RDC Onsite XSS Vulnerability Course Schedule - New iPhone & iPad Hands-On course it-sa 2011: Compass Live-Hacking at IT-SA 2011 in Nürnberg |
||||||||||||||