Cross-site scripting (XSS) vulnerability in the CookieDump.java sample application in Mort Bay Jetty 6.1.19 and 6.1.20 allows remote malicious users to inject arbitrary web script or HTML via the Value parameter in a GET request to cookie/.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mortbay jetty 6.1.19 |
||
mortbay jetty 6.1.20 |