CVE-2014-2966 Information
Feb 14, 2021
cve
Description
The ISO-8859-1 encoder in Resin Pro before 4.0.40 does not properly perform Unicode transformations which allows remote attackers to bypass intended text restrictions via crafted characters as demonstrated by bypassing an XSS protection mechanism.
Reference
http://caucho.com/products/resin/downloaddownload http://www.kb.cert.org/vuls/id/162308
Share on: