Cross-site scripting (XSS) vulnerability in Soft3304 04WebServer 1.83 and earlier allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly sanitized before it is returned in an error page, a different vulnerability than CVE-2004-1512.
                
            References
                    | Link | Resource | 
|---|---|
| http://secunia.com/advisories/21504 | Patch Vendor Advisory | 
| http://www.securityfocus.com/bid/19496 | Patch | 
| http://www.soft3304.net/04WebServer/Security.html | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/28354 | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2006-08-17 21:04
Updated : 2017-07-20 01:32
NVD link : CVE-2006-4199
Mitre link : CVE-2006-4199
CVE.ORG link : CVE-2006-4199
JSON object : View
Products Affected
                soft3304
- 04webserver
CWE
                