Security Advisory

CVE-2005-1555

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-05-14 04:00:00
Last updated 2024-08-07 21:51:50
Assigner mitre
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in the JRun Web Server in ColdFusion MX 7.0 allows remote attackers to inject arbitrary script or HTML via the URL, which is not properly quoted in the resulting default 404 error page.