Caucho Technologies Information for VU#981651

Caucho Technologies Resin vulnerable to Cross-Site Scripting via passing of user input directly to default error page

Status

Affected

Vendor Statement

Resin 1.2.4 was released with the fix on April 11, 2001.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References

None

Addendum

The CERT/CC has no additional comments at this time.

If you have feedback, comments, or additional information about this vulnerability, please send us email.