CVE

Id
8620  
CVE No.
CVE-2004-0192  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in the Management Service for Symantec Gateway Security 2.0 allows remote attackers to steal cookies and hijack a management session via a /sgmi URL that contains malicious script, which is not quoted in the resulting error page.  
Phase
Modified (20040813)  
Votes
ACCEPT(3) Armstrong, Baker, Cole | NOOP(2) Cox, Wall  
Comments