5
CVE-2002-1252
- EPSS 0.42%
- Veröffentlicht 07.02.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The Application Messaging Gateway for PeopleTools 8.1x before 8.19, as used in various PeopleSoft products, allows remote attackers to read arbitrary files via certain XML External Entities (XXE) fields in an HTTP POST request that is processed by the SimpleFileHandler handler.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Peoplesoft ≫ Peopletools Version8.14
Peoplesoft ≫ Peopletools Version8.15
Peoplesoft ≫ Peopletools Version8.16
Peoplesoft ≫ Peopletools Version8.17
Peoplesoft ≫ Peopletools Version8.18
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.42% | 0.593 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|