← לוח פגיעויות

CVE-2000-1236

טרם דורגה

טרם דורג — בהתאם למדיניות NVD מאפריל 2026, רוב ה-CVE אינם מנותחים מיידית. ציון EPSS (אם קיים) עדיין מוצג.

תיאור (מקור, אנגלית)

SQL injection vulnerability in mod_sql in Oracle Internet Application Server (IAS) 3.0.7 and earlier allows remote attackers to execute arbitrary SQL commands via the query string of the URL.

מדדים

EPSS — סבירות ניצול
2% (אחוזון 100) נכון ל-23/9/2026

מוצרים מושפעים

oracle: application server

קישורים