Lucene search

K
securityvulnsVULN-DEVSECURITYVULNS:VULN:668
HistoryAug 20, 2002 - 12:00 a.m.

Proxy error messages crossite scripting

2002-08-2000:00:00
VULN-DEV
vulners.com
11

In error message URL is not escaped, it makes it possible to inject javascript into URL.

CPENameOperatorVersion
squideq2.4
cern httpdeq3.0
jigsaweq2.2