Lucene search

K
prionPRIOn knowledge basePRION:CVE-2009-4612
HistoryJan 13, 2010 - 8:30 p.m.

Cross site scripting

2010-01-1320:30:00
PRIOn knowledge base
www.prio-n.com
6

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

45.9%

Multiple cross-site scripting (XSS) vulnerabilities in the WebApp JSP Snoop page in Mort Bay Jetty 6.1.x through 6.1.21 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the default URI under (1) jspsnoop/, (2) jspsnoop/ERROR/, and (3) jspsnoop/IOException/, and possibly the PATH_INFO to (4) snoop.jsp.

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

45.9%