Remote Code Injection via person parameter in InteractiveQuery.jsp for BEA WebLogic 8.1 and earlier

Remote Code Injection via person parameter in InteractiveQuery.jsp for BEA WebLogic 8.1 and earlier

CVE-2003-0624 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Cross-site scripting (XSS) vulnerability in InteractiveQuery.jsp for BEA WebLogic 8.1 and earlier allows remote attackers to inject malicious web script via the person parameter.

Learn more about our Web App Pen Testing.