CVE-2002-1315
CVE-2002-1315
Cross-site scripting (XSS) vulnerability in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows remote attackers to execute web script or HTML as the iPlanet administrator by injecting the desired script into error logs, and possibly escalating privileges by using the XSS vulnerability in conjunction with another issue (CVE-2002-1316).
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0078.htmlhttp://marc.info/?l=bugtraq&m=103772308030269&w=2http://sunsolve.sun.com/search/document.do?assetkey=1-26-49475-1http://www.iss.net/security_center/static/10692.phphttp://www.ngsec.com/docs/advisories/NGSEC-2002-4.txthttp://www.securityfocus.com/bid/6202