info
discussion
exploit
solution
references
Jetty Cookie Names Session Hijacking Vulnerability
References:
Jetty Changelog
(Jetty)
Jetty Homepage
(Jetty)
VU#438616 Mortbay Jetty fails to properly handle cookies with quotes
(US-CERT)
Privacy Statement
Copyright 2010, SecurityFocus