oracle iplanet-web-server CVE-2020-9314 is a vulnerability in Oracle Iplanet Web Server
Published on May 10, 2020

** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Oracle iPlanet Web Server 7.0.x allows image injection in the Administration console via the productNameSrc parameter to an admingui URI. This issue exists because of an incomplete fix for CVE-2012-0516. NOTE: a related support policy can be found in the www.oracle.com references attached to this CVE.

NVD


Products Associated with CVE-2020-9314

Want to know whenever a new CVE is published for Oracle Iplanet Web Server? stack.watch will email you.

 

Exploit Probability

EPSS
12.01%
Percentile
93.67%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.