PT-2002-2059 · W3C · W3C Jigsaw Proxy Server

Published

2002-10-04

·

Updated

2008-09-05

·

CVE-2002-1053

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: W3C Jigsaw Proxy Server versions prior to 2.2.1
Description: A cross-site scripting issue allows remote attackers to execute arbitrary script via a URL that contains a reference to a nonexistent host followed by the script. The script is included in the resulting error message.
Recommendations: For versions prior to 2.2.1, update to version 2.2.1 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-1053

Affected Products

W3C Jigsaw Proxy Server