5
CVE-2002-1252
- EPSS 0.42%
- Veröffentlicht 07.02.2003 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The Application Messaging Gateway for PeopleTools 8.1x before 8.19, as used in various PeopleSoft products, allows remote attackers to read arbitrary files via certain XML External Entities (XXE) fields in an HTTP POST request that is processed by the SimpleFileHandler handler.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Peoplesoft ≫ Peopletools Version8.14
Peoplesoft ≫ Peopletools Version8.15
Peoplesoft ≫ Peopletools Version8.16
Peoplesoft ≫ Peopletools Version8.17
Peoplesoft ≫ Peopletools Version8.18
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.42% | 0.593 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|