CVE-2001-0828

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/12/2001
Last modified:
03/04/2025

Description

A cross-site scripting vulnerability in Caucho Technology Resin before 1.2.4 allows a malicious webmaster to embed Javascript in a hyperlink that ends in a .jsp extension, which causes an error message that does not properly quote the Javascript.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:caucho_technology:resin:*:*:*:*:*:*:*:* 1.2.4 (including)
cpe:2.3:a:caucho_technology:resin:1.2.2:*:*:*:*:*:*:*