PT-2002-2059 · W3C · W3C Jigsaw Proxy Server
Published
2002-10-04
·
Updated
2008-09-05
·
CVE-2002-1053
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
W3C Jigsaw Proxy Server versions prior to 2.2.1
Description:
A cross-site scripting issue allows remote attackers to execute arbitrary script via a URL that contains a reference to a nonexistent host followed by the script. The script is included in the resulting error message.
Recommendations:
For versions prior to 2.2.1, update to version 2.2.1 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
W3C Jigsaw Proxy Server