Lucene search

K
cvelistMitreCVELIST:CVE-2004-2763
HistoryJun 01, 2009 - 10:00 p.m.

CVE-2004-2763

2009-06-0122:00:00
mitre
www.cve.org
3
cve-2004-2763
http trace request
cross-site tracing attack
cross-site scripting vulnerability
information theft

AI Score

5.9

Confidence

Low

EPSS

0.006

Percentile

79.2%

The default configuration of Sun ONE/iPlanet Web Server 4.1 SP1 through SP12 and 6.0 SP1 through SP5 responds to the HTTP TRACE request, which can allow remote attackers to steal information using cross-site tracing (XST) attacks in applications that are vulnerable to cross-site scripting.

AI Score

5.9

Confidence

Low

EPSS

0.006

Percentile

79.2%

Related for CVELIST:CVE-2004-2763