CVE-2009-1088
25.03.2009, 18:30
Hannon Hill Cascade Server 5.7 and other versions allows remote authenticated users to execute arbitrary programs or Java code via a crafted XSLT stylesheet with "extension elements and extension functions" that trigger code execution by Xalan-Java, as demonstrated using xalan://java.lang.Runtime.
Vendor | Product | Version |
---|---|---|
hannonhill | cascade | 5.7:svr |
𝑥
= Vulnerable software versions
References