CVE-2007-5613

Jetty < 6.1.6 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in Dump Servlet in Mortbay Jetty before 6.1.6rc1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters and cookies.

Scores

EPSS 0.0389
EPSS Percentile 88.1%

Classification

CWE
CWE-79
Status draft

Affected Products (12)

mortbay_jetty/jetty
mortbay_jetty/jetty
mortbay_jetty/jetty
mortbay_jetty/jetty
mortbay_jetty/jetty
mortbay_jetty/jetty
mortbay_jetty/jetty
mortbay_jetty/jetty
mortbay_jetty/jetty
mortbay_jetty/jetty
mortbay_jetty/jetty
org.mortbay.jetty/jetty < 6.1.6Maven

Timeline

Published Dec 05, 2007
Tracked Since Feb 18, 2026