Security Advisory

CVE-2002-1027

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2002-08-31 04:00:00
Last updated 2024-08-08 03:12:16
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Cross-site scripting vulnerability in the default HTTP 500 error script (500error.jsp) for Macromedia Sitespring 1.2.0 (277.1) allows remote attackers to execute arbitrary web script via a link to 500error.jsp with the script in 1the et parameter.