CVE-2008-2852

Cross-site scripting (XSS) vulnerability in CGIWrap before 4.1, when an Internet Explorer based browser is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to failure to set the charset in error messages.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:nathan_neulinger:cgiwrap:3.5:*:*:*:*:*:*:*
cpe:2.3:a:nathan_neulinger:cgiwrap:3.6:*:*:*:*:*:*:*
cpe:2.3:a:nathan_neulinger:cgiwrap:3.6.1:*:*:*:*:*:*:*
cpe:2.3:a:nathan_neulinger:cgiwrap:3.6.2:*:*:*:*:*:*:*
cpe:2.3:a:nathan_neulinger:cgiwrap:3.6.3:*:*:*:*:*:*:*
cpe:2.3:a:nathan_neulinger:cgiwrap:3.6.4:*:*:*:*:*:*:*
cpe:2.3:a:nathan_neulinger:cgiwrap:3.6.10:*:*:*:*:*:*:*
cpe:2.3:a:nathan_neulinger:cgiwrap:3.7:*:*:*:*:*:*:*
cpe:2.3:a:nathan_neulinger:cgiwrap:4.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-06-25 12:36

Updated : 2024-02-04 17:33


NVD link : CVE-2008-2852

Mitre link : CVE-2008-2852

CVE.ORG link : CVE-2008-2852


JSON object : View

Products Affected

nathan_neulinger

  • cgiwrap
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')