CVE Database
/

CVE-2006-2501

Back to search

CVE-2006-2501

Published: May 20, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Sun ONE Web Server 6.0 SP9 and earlier, Java System Web Server 6.1 SP4 and earlier, Sun ONE Application Server 7 Platform and Standard Edition Update 6 and earlier, and Java System Application Server 7 2004Q2 Standard and Enterprise Edition Update 2 and earlier, allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors, possibly involving error messages.

VendorProductVersions

n/a

n/a

affected
n/a

References

18035
vdb-entry
x_refsource_BID
1016125
vdb-entry
x_refsource_SECTRACK
102164
vendor-advisory
x_refsource_SUNALERT
sun-java-system-xss(26550)
vdb-entry
x_refsource_XF
20147
third-party-advisory
x_refsource_SECUNIA
1016126
vdb-entry
x_refsource_SECTRACK
JVN#03D5EAA8
third-party-advisory
x_refsource_JVN
ADV-2006-1866
vdb-entry
x_refsource_VUPEN
VU#114956
third-party-advisory
x_refsource_CERT-VN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now