Security Advisory

CVE-2001-1202

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2002-03-15 05:00:00
Last updated 2024-08-08 04:44:08
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a URL that generates an error.