Vulnerable Systems:
*Oracle Glassfish 2.1.1
*Oracle Glassfish 3.0.1
*Oracle Glassfish 3.1.1
*Oracle Communications Server 2.0
*Oracle Sun Java System Application Server 8.1
*Oracle Sun Java System Application Serve 8.2
Oracle GlassFish Server is prone to a denial-of-service vulnerability.
An attacker can exploit this issue by sending specially crafted forms in HTTP POST requests.
Oracle GlassFish Server 3.1.1 and prior versions are vulnerable.
Vendor Status:
Orcale had since issued an update for this vulnerability
Disclosure Timeline:
2012-January-23 Rev 3. Updated JD Edwards information for One World Tools SP24
2012-January-18 Rev 2. Updated credit information
2012-January-17 Rev 1. Initial Release