Cross-site scripting vulnerability in CGIWrap before 3.7 allows remote attackers to execute arbitrary Javascript on other web clients by causing the Javascript to be inserted into error messages that are generated by CGIWrap.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-07/0499.html | Vendor Advisory |
http://cgiwrap.sourceforge.net/changes.html | Patch |
http://www.osvdb.org/1909 | |
http://www.securityfocus.com/bid/3084 | Exploit Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6886 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2002-03-09T05:00:00
Updated: 2002-02-06T10:00:00
Reserved: 2002-01-31T00:00:00
Link: CVE-2001-0987
JSON object: View
NVD Information
Status : Modified
Published: 2001-07-22T04:00:00.000
Modified: 2017-10-10T01:29:57.610
Link: CVE-2001-0987
JSON object: View
Redhat Information
No data.
CWE