Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-79p6-hxp5-mfcw

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

The default configuration of Sun ONE/iPlanet Web Server 4.1 SP1 through SP12 and 6.0 SP1 through SP5 responds to the HTTP TRACE request, which can allow remote attackers to steal information using cross-site tracing (XST) attacks in applications that are vulnerable to cross-site scripting.

The default configuration of Sun ONE/iPlanet Web Server 4.1 SP1 through SP12 and 6.0 SP1 through SP5 responds to the HTTP TRACE request, which can allow remote attackers to steal information using cross-site tracing (XST) attacks in applications that are vulnerable to cross-site scripting.

EPSS

Процентиль: 72%
0.0072
Низкий

Связанные уязвимости

nvd
больше 16 лет назад

The default configuration of Sun ONE/iPlanet Web Server 4.1 SP1 through SP12 and 6.0 SP1 through SP5 responds to the HTTP TRACE request, which can allow remote attackers to steal information using cross-site tracing (XST) attacks in applications that are vulnerable to cross-site scripting.

EPSS

Процентиль: 72%
0.0072
Низкий