Unrated severityNVD Advisory· Published Dec 31, 2000· Updated Apr 16, 2026
CVE-2000-1236
CVE-2000-1236
Description
SQL injection vulnerability in mod_sql in Oracle Internet Application Server (IAS) 3.0.7 and earlier allows remote attackers to execute arbitrary SQL commands via the query string of the URL.
Affected products
1- cpe:2.3:a:oracle:application_server:*:*:*:*:*:*:*:*Range: <=3.0.7
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.iss.net/security_center/static/5817.phpnvdPatch
- www.securityfocus.com/bid/2150nvdPatch
- archives.neohapsis.com/archives/bugtraq/2000-12/0339.htmlnvd
- archives.neohapsis.com/archives/bugtraq/2000-12/0372.htmlnvd
- archives.neohapsis.com/archives/bugtraq/2000-12/0463.htmlnvd
- online.securityfocus.com/archive/1/155881nvd
News mentions
0No linked articles in our index yet.