CVE-2005-1555
N/A
N/A
Summary
Cross-site scripting (XSS) vulnerability in the JRun Web Server in ColdFusion MX 7.0 allows remote attackers to inject arbitrary script or HTML via the URL, which is not properly quoted in the resulting default 404 error page.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://marc.info/?l=bugtraq&m=111575500403231&w=2
- http://www.macromedia.com/devnet/security/security_zone/mpsb05-03.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20550
References
- http://marc.info/?l=bugtraq&m=111575500403231&w=2
- http://www.macromedia.com/devnet/security/security_zone/mpsb05-03.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20550
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.