The encapsulation script mechanism in Webwasher CSM Appliance Suite 5.x uses case-sensitive detection of malicious tokens, which allows attackers to bypass script detection by using tokens that can be upper or lower case. NOTE: the vendor has stated that this problem could not be reproduced, and has asked the researcher for more information, without a response as of 20060103
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-12-23T01:00:00
Updated: 2024-08-07T23:46:05.528Z
Reserved: 2005-12-22T00:00:00
Link: CVE-2005-4514
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-12-23T01:03:00.000
Modified: 2024-11-21T00:04:26.257
Link: CVE-2005-4514
Redhat
No data.