Vulnerabilities > CVE-2004-2618 - Input Validation vulnerability in Pegasi web Server Pegasi web Server 0.2.2

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
pegasi-web-server
exploit available

Summary

Cross-site scripting (XSS) vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote attackers to inject arbitrary web script or HTML via the URI, directly after the initial '/' (slash).

Vulnerable Configurations

Part Description Count
Application
Pegasi_Web_Server
1

Exploit-Db

descriptionPegasi Web Server 0.2.2 Error Page XSS. CVE-2004-2618. Remote exploit for linux platform
idEDB-ID:23803
last seen2016-02-02
modified2004-03-11
published2004-03-11
reporterDonato Ferrante
sourcehttps://www.exploit-db.com/download/23803/
titlePegasi Web Server 0.2.2 Error Page XSS