Vulnerabilities > CVE-2001-1202 - Cross-Site Scripting vulnerability in DeleGate
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a URL that generates an error.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Exploit-Db
description | DeleGate 7.7.1 Cross-Site Scripting Vulnerability. CVE-2001-1202. Remote exploits for multiple platform |
id | EDB-ID:21193 |
last seen | 2016-02-02 |
modified | 2001-12-28 |
published | 2001-12-28 |
reporter | SNS Research |
source | https://www.exploit-db.com/download/21193/ |
title | DeleGate 7.7.1 - Cross-Site Scripting Vulnerability |