Cross-site scripting (XSS) vulnerability in Soft3304 04WebServer 1.83 and earlier allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly sanitized before it is returned in an error page, a different vulnerability than CVE-2004-1512.
References
Link | Resource |
---|---|
http://www.soft3304.net/04WebServer/Security.html | |
http://www.securityfocus.com/bid/19496 | Patch |
http://secunia.com/advisories/21504 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/28354 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-08-17 14:04
Updated : 2017-07-19 18:32
NVD link : CVE-2006-4199
Mitre link : CVE-2006-4199
JSON object : View
CWE
Products Affected
soft3304
- 04webserver