CVE-2003-0405
N/A
N/A
Summary
Vignette StoryServer 5 and Vignette V/6 allows remote attackers to execute arbitrary TCL code via (1) an HTTP query or cookie which is processed in the NEEDS command, or (2) an HTTP Referrer that is processed in the VALID_PATHS command.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.iss.net/security_center/static/12070.php
- http://www.s21sec.com/es/avisos/s21sec-024-en.txt
- http://marc.info/?l=bugtraq&m=105405922826197&w=2
- http://www.securityfocus.com/bid/7692
- http://www.securityfocus.com/bid/7690
References
- http://www.iss.net/security_center/static/12070.php
- http://www.s21sec.com/es/avisos/s21sec-024-en.txt
- http://marc.info/?l=bugtraq&m=105405922826197&w=2
- http://www.securityfocus.com/bid/7692
- http://www.securityfocus.com/bid/7690
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.