Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2023-23951

Disclosure Date: January 26, 2023 (last updated October 08, 2023)
Ability to enumerate the Oracle LDAP attributes for the current user by modifying the query used by the application
Attacker Value
Unknown

CVE-2023-23950

Disclosure Date: January 26, 2023 (last updated October 08, 2023)
User’s supplied input (usually a CRLF sequence) can be used to split a returning response into two responses.
Attacker Value
Unknown

CVE-2023-23949

Disclosure Date: January 26, 2023 (last updated October 08, 2023)
An authenticated user can supply malicious HTML and JavaScript code that will be executed in the client browser.