Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-2852

Опубликовано: 25 июн. 2008
Источник: debian

Описание

Cross-site scripting (XSS) vulnerability in CGIWrap before 4.1, when an Internet Explorer based browser is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to failure to set the charset in error messages.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cgiwrapremovedpackage
cgiwrapno-dsaetchpackage

Примечания

  • only applies to certain character sets and only works with

  • browsers. There isn't a good solution available, the patch uses

  • a compile-time charset specification. All in all not a real

  • priority to fix in etch.

Связанные уязвимости

ubuntu
больше 17 лет назад

Cross-site scripting (XSS) vulnerability in CGIWrap before 4.1, when an Internet Explorer based browser is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to failure to set the charset in error messages.

nvd
больше 17 лет назад

Cross-site scripting (XSS) vulnerability in CGIWrap before 4.1, when an Internet Explorer based browser is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to failure to set the charset in error messages.

github
почти 4 года назад

Cross-site scripting (XSS) vulnerability in CGIWrap before 4.1, when an Internet Explorer based browser is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to failure to set the charset in error messages.