Skip to Main Content

Hardware

Announcement

For appeals, questions and feedback about Oracle Forums, please email oracle-forums-moderators_us@oracle.com. Technical questions should be asked in the appropriate category. Thank you!

How to disable DTD processing in the XML parser of OracleDB to prevent XXE exploit

user12845545Dec 21 2017

Hi,

I am looking for a way to disable DTD processing in the XML parser of OracleDB to prevent XXE exploit.

I am trying to figure out how making these configuration changes to the server so that will not require modification of the applications and will then, impact all applications as a whole.

Best regards,

Jean-Francois Weemaes

Comments
Post Details
Added on Dec 21 2017
0 comments
1,017 views