Cross-site scripting vulnerability in analog before 5.22 allows remote attackers to execute Javascript via an HTTP request containing the script, which is entered into a web logfile and not properly filtered by analog during display.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2002-04-22 04:00
Updated : 2008-09-11 00:00
NVD link : CVE-2002-0166
Mitre link : CVE-2002-0166
CVE.ORG link : CVE-2002-0166
JSON object : View
Products Affected
stephen_turner
- analog
CWE