cvelist/2008/1xxx/CVE-2008-1283.json
2019-03-18 04:02:57 +00:00

77 lines
2.3 KiB
JSON

{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2008-1283",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "Cross-site scripting (XSS) vulnerability in Neptune Web Server 3.0 allows remote attackers to inject arbitrary web script or HTML via the URI, which is not properly handled in the 404 error page."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "neptune-webserver-404errorpage-xss(41089)",
"refsource": "XF",
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/41089"
},
{
"name": "28148",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/28148"
},
{
"name": "20080307 XSS in Neptune Web Server",
"refsource": "BUGTRAQ",
"url": "http://www.securityfocus.com/archive/1/489282/100/0/threaded"
},
{
"name": "3725",
"refsource": "SREASON",
"url": "http://securityreason.com/securityalert/3725"
}
]
}
}