Heap
09-11-07, 15:40
SQL injection vulnerability in okxLOV.jsp in Oracle E-Business Suite 11 and 12 allows remote attackers to execute arbitrary SQL commands via unknown vectors. NOTE: this is probably the same issue as CVE-2007-5527 or CVE-2007-5528, but there are insufficient details to be sure.
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-5766)
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-5766)