Oval Definition:
oval:org.mitre.oval:def:307
Revision Date
:
2008-07-07
Version
:
18
Title
:
CGI.pm start_form Cross-Site Scripting Vulnerability
Description
:
Cross-site scripting (XSS) vulnerability in start_form() of CGI.pm allows remote attackers to insert web script via a URL that is fed into the form's action parameter.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2003-0615
Platform(s)
:
Sun Solaris 8
Sun Solaris 9
Product(s)
:
Perl
Definition Synopsis
Solaris 8 (SPARC) meets Sun Alert ID 200205 (formerly 101426) criteria.
Solaris 8 (SPARC) is installed
AND
NOT
Patch 122091-01 or later installed
OR
Solaris 8 (x86) meets Sun Alert ID 200205 (formerly 101426) criteria.
Solaris 8 (x86) is installed
AND
NOT
Patch 122092-01 or later installed
OR
Solaris 9 (SPARC) meets Sun Alert ID 200205 (formerly 101426) criteria.
Solaris 9 (SPARC) is installed
AND
NOT
Patch 119449-01 or later installed
OR
Solaris 9 (x86) meets Sun Alert ID 200205 (formerly 101426) criteria.
Solaris 9 (x86) is installed
AND
NOT
Patch 119450-01 or later installed
BACK