Cross-site scripting (XSS) vulnerability in Mephistoles httpd 0.6.0 final allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into the URL.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:52
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=107470433714179&w=2 - | |
References | () http://secunia.com/advisories/10693 - | |
References | () http://www.osvdb.org/3689 - | |
References | () http://www.securityfocus.com/bid/9470 - Exploit, Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/14899 - |
Information
Published : 2004-12-31 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2004-2096
Mitre link : CVE-2004-2096
CVE.ORG link : CVE-2004-2096
JSON object : View
Products Affected
mephistoles_internet_suite
- mephistoles_httpd
CWE