CVE

Id
5699  
CVE No.
CVE-2002-1315  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows remote attackers to execute web script or HTML as the iPlanet administrator by injecting the desired script into error logs, and possibly escalating privileges by using the XSS vulnerability in conjunction with another issue (CVE-2002-1316).  
Phase
Modified (20071014)  
Votes
ACCEPT(1) Baker | NOOP(3) Cole, Cox, Wall | REVIEWING(1) Green  
Comments