Aladdin eSafe Gateway versions 2.x allows a remote attacker to circumvent HTML SCRIPT filtering via a special arrangement of HTML tags which includes SCRIPT tags embedded within other SCRIPT tags.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/6580 | vdb entry |
http://archives.neohapsis.com/archives/bugtraq/2001-05/0282.html | mailing list exploit patch vendor advisory |