Files
CVEs-PoC/2004/CVE-2004-2763.md
2025-09-29 21:09:30 +02:00

802 B

CVE-2004-2763

Description

The default configuration of Sun ONE/iPlanet Web Server 4.1 SP1 through SP12 and 6.0 SP1 through SP5 responds to the HTTP TRACE request, which can allow remote attackers to steal information using cross-site tracing (XST) attacks in applications that are vulnerable to cross-site scripting.

POC

Reference

No PoCs from references.

Github