Aladdin eSafe Gateway versions 3.0 and earlier allows a remote attacker to circumvent HTML SCRIPT filtering via the UNICODE encoding of SCRIPT tags within the HTML document.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/6580 | vdb entry |
http://archives.neohapsis.com/archives/bugtraq/2001-05/0285.html | mailing list exploit vendor advisory |