oval:org.mitre.oval:def:485
Definition Id: oval:org.mitre.oval:def:485 | |||
Oval ID: | oval:org.mitre.oval:def:485 | ||
Title: | PH Cross-site Scripting Vulnerability | ||
Description: | Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2003-0442 | Version: | 2 |
Platform(s): | Red Hat Linux 9 | Product(s): | php |
Definition Synopsis: | |||