Cross-site scripting (XSS) vulnerability in Xerver 4.17 allows remote attackers to inject arbitrary web script or HTML after a /%00/ sequence at the end of the URI. This vulnerability is addressed in the following product release:
Xerver, Xerver, 4.20
Publication date: Sat, 31 Dec 2005 11:00:00 +0000