The grid option in PeopleSoft 8.42 stores temporary .xls files in guessable directories under the web document root, which allows remote attackers to steal search results by directly accessing the files via a URL request.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://marc.info/?l=bugtraq&m=106554919000847&w=2 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2003-10-09T04:00:00
Updated: 2024-08-08T02:05:12.554Z
Reserved: 2003-10-08T00:00:00
Link: CVE-2003-0841
Vulnrichment
No data.
NVD
Status : Modified
Published: 2003-11-17T05:00:00.000
Modified: 2024-11-20T23:45:38.873
Link: CVE-2003-0841
Redhat
No data.