Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2002-1008

Опубликовано: 04 окт. 2002
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Cross-site scripting vulnerability in PowerBASIC urlcount.cgi, as included in Lil' HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via a request to urlcount.cgi that contains the script, which is not filtered when the REPORT capability prints the original request.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:summit_computer_networks:lil_http_server:2.1:*:*:*:*:*:*:*
cpe:2.3:a:summit_computer_networks:lil_http_server:2.2:*:*:*:*:*:*:*

EPSS

Процентиль: 88%
0.03832
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Cross-site scripting vulnerability in PowerBASIC urlcount.cgi, as included in Lil' HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via a request to urlcount.cgi that contains the script, which is not filtered when the REPORT capability prints the original request.

EPSS

Процентиль: 88%
0.03832
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other