CVE-2004-2443 | Jaws 0.2/0.3 admin.php logged_on session cross site scripting (EDB-24256 / Nessus ID 16198)
A vulnerability, which was classified as problematic, has been found in Jaws 0.2/0.3. Affected by this issue is the function logged_on of the file admin.php. The manipulation of the argument session leads to basic cross site scripting.
This vulnerability is handled as CVE-2004-2443. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to add further authentication.