Описание
Cross-site scripting (XSS) vulnerability in Response_default.html in 04WebServer 1.42 allows remote attackers to execute arbitrary web script or HTML via script code in the URL, which is not quoted in the resulting default error page.
Ссылки
- Vendor Advisory
- Patch
- ExploitPatch
- Vendor Advisory
- Patch
- ExploitPatch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:soft3304:04webserver:1.42:*:*:*:*:*:*:*
EPSS
Процентиль: 69%
0.00622
Низкий
4.3 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
Cross-site scripting (XSS) vulnerability in Response_default.html in 04WebServer 1.42 allows remote attackers to execute arbitrary web script or HTML via script code in the URL, which is not quoted in the resulting default error page.
EPSS
Процентиль: 69%
0.00622
Низкий
4.3 Medium
CVSS2
Дефекты
NVD-CWE-Other