CVE-2009-2704 Information

Description

CA SiteMinder allows remote attackers to bypass cross-site scripting (XSS) protections for J2EE applications via a request containing a 00 (encoded null byte).

Reference

http://i8jesus.com/?p=55

Share on: