Description
Cross-site scripting (XSS) vulnerability in Novell NetWare 6.5 Support Pack 5 and 6 and Novell Apache on NetWare 2.0.48 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters in Welcome web-app.
Affected products
- Novell / apache_http_server2.0.48 – 2.0.48
- Novell / netware6.5 – 6.5
- Novell / netware6.5 – 6.5