CVE-2007-5614

Mortbay Jetty before 6.1.6rc1 does not properly handle "certain quote sequences" in HTML cookie parameters, which allows remote attackers to hijack browser sessions via unspecified vectors.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mortbay_jetty:jetty:1.0:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:2.4:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:5.1:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:6:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:4.0:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:4.1:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:3.0:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:3.1:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:6.1:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:4.2:*:*:*:*:*:*:*
cpe:2.3:a:mortbay_jetty:jetty:5:*:*:*:*:*:*:*

Information

Published : 2007-12-05 03:46

Updated : 2009-06-09 22:09


NVD link : CVE-2007-5614

Mitre link : CVE-2007-5614


JSON object : View

Advertisement

dedicated server usa

Products Affected

mortbay_jetty

  • jetty