Computer Security
[EN] securityvulns.ru
no-pyccku



Crossite scripting in AN HTTPD
Published:29.10.2002
Source:BUGTRAQ
SecurityVulns ID:2374
Type:remote
Level:5/10
Description:AN HTTPD shows an error page if a client sends a request containing ":" in the URI field. The problem occurs due to the fact that this URI is injected into the error page without being sanitized.
Affected:ANHTTPD : AN HTTPd 1.41
Original documentdocumentSNS, [SNS Advisory No.57] AN HTTPD Cross-site Scripting Vulnerability (29.10.2002)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru