Python 2.2/2.3 - Documentation Server Error Page Cross-Site Scripting



EKU-ID: 27974 CVE: OSVDB-ID:
Author: euronymous Published: 2003-04-15 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/7353/info

It has been reported that the Python Documentation Server is vulnerable to a cross-site scripting problem in error pages. Because of this, an attacker could potentially cause the execution of malicious HTML and script code in the browser of a web user.

http://www.example.com:7464/<script>example</script>