SQL injection vulnerability in Oracle Forms 10g allows remote attackers to execute arbitrary SQL commands via the Query/Where feature.
Link | Tags |
---|---|
http://www.securiteam.com/securitynews/5HP0I0UFFI.html | vendor advisory |
http://www.red-database-security.com/wp/sql_injection_forms_us.pdf | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/20080 | vdb entry |