VYPR
Unrated severityNVD Advisory· Published Feb 12, 2008· Updated Jun 16, 2026

CVE-2008-0694

CVE-2008-0694

Description

Cross-site scripting (XSS) vulnerability in the HTTP Server in IBM OS/400 V5R3M0 and V5R4M0 allows remote attackers to inject arbitrary web script or HTML via the Expect HTTP header.

Affected products

3
  • IBM/Os\/4002 versions
    cpe:2.3:o:ibm:os_400:v5r3m0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:ibm:os_400:v5r3m0:*:*:*:*:*:*:*
    • cpe:2.3:o:ibm:os_400:v5r4m0:*:*:*:*:*:*:*
  • Range: V5R3M0 and V5R4M0

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.