7.5
CVSSv2

CVE-2001-1202

Published: 28/12/2001 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote malicious users to execute arbitrary Javascript on other clients via a URL that generates an error.

Vulnerable Product Search on Vulmon Subscribe to Product

delegate delegate 7.7.0

delegate delegate 7.7.1

delegate delegate 7.8.0

delegate delegate 7.8.1

Exploits

source: wwwsecurityfocuscom/bid/3749/info DeleGate is a proxy server which runs on Linux , Unix, Microsoft Windows and OS/2 platforms It is capable of translating a number of protocols(HTTP, FTP, NNTP, POP, Telnet, etc) between client and server DeleGate is prone to cross-site scripting attacks HTML tags are not filtered from links t ...