CVE-2003-1513 Information

Description

Multiple cross-site scripting (XSS) vulnerabilities in example scripts in Caucho Technology Resin 2.0 through 2.1.2 allow remote attackers to inject arbitrary web script or HTML via (1) env.jsp (2) form.jsp (3) session.jsp (4) the move parameter to tictactoe.jsp or the (5) name or (6) comment fields to guestbook.jsp.

Reference

http://lists.grok.org.uk/pipermail/full-disclosure/2003-October/012361.html http://secunia.com/advisories/10031 http://www.securityfocus.com/bid/8852 https://exchange.xforce.ibmcloud.com/vulnerabilities/13460

Share on: