[Full-disclosure] SQL Injection Flaw in Oracle Workspace Manager

2007-10-17 Thread David Litchfield
(resend with title...) NGSSoftware Insight Security Research Advisory Name: SQL Injection Flaw in Oracle Workspace Manager Systems Affected: Oracle 10g release 1 and 2, Oracle 9i Severity: High Vendor URL: http://www.oracle.com/ Author: David Litchfield [ [EMAIL PROTECTED] ] Reported: 22nd August

Re: [Full-disclosure] SQL Injection Flaw in Oracle Workspace Manager

2007-10-17 Thread full-disclosure
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Yessir. On Wed, 17 Oct 2007 10:27:49 -0400 David Litchfield <[EMAIL PROTECTED]> wrote: >(resend with title...) > >NGSSoftware Insight Security Research Advisory > >Name: SQL Injection Flaw in Oracle Workspace Manager >Systems Affected: Oracle 10g rele