CVE-2001-0519
Aladdin eSafe Gateway 2.x - Cross-Site Scripting via Nested SCRIPT Tags
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2001-0519. PoCs published by eDvice Security Services.
AI-analyzed exploit summary This exploit demonstrates a bypass of eSafe Gateway's script filtering by embedding malicious JavaScript within HTML tags like HREF or BODY. The PoC shows how scripting commands can execute despite the 'remove all scripts' option being enabled.
Description
Aladdin eSafe Gateway versions 2.x allows a remote attacker to circumvent HTML SCRIPT filtering via a special arrangement of HTML tags which includes SCRIPT tags embedded within other SCRIPT tags.
Exploits (1)
This exploit demonstrates a bypass of eSafe Gateway's script filtering by embedding malicious JavaScript within HTML tags like HREF or BODY. The PoC shows how scripting commands can execute despite the 'remove all scripts' option being enabled.