CERN Proxy Server: Cross-Site Scripting Vulnerability ===================================================== Affected: CERN HTTPD 3.0A http://www.w3.org/Daemon/Activity.html Vendor Status: CERN httpd team (httpdat_private) was notified on Aug 10, 2001 but they did not respond. Exploit: http://nonexistenthost.google.com/