7.5
CVE-2001-1199
- EPSS 4.67%
- Veröffentlicht 17.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g, when debug mode is enabled, allows remote attackers to execute Javascript on other clients via the cart_id parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Steve Kneizys ≫ Agora.Cgi Version3.2
Steve Kneizys ≫ Agora.Cgi Version3.2a
Steve Kneizys ≫ Agora.Cgi Version3.2b
Steve Kneizys ≫ Agora.Cgi Version3.2c
Steve Kneizys ≫ Agora.Cgi Version3.2d
Steve Kneizys ≫ Agora.Cgi Version3.2e
Steve Kneizys ≫ Agora.Cgi Version3.2f
Steve Kneizys ≫ Agora.Cgi Version3.2g
Steve Kneizys ≫ Agora.Cgi Version3.2h
Steve Kneizys ≫ Agora.Cgi Version3.2i
Steve Kneizys ≫ Agora.Cgi Version3.2j
Steve Kneizys ≫ Agora.Cgi Version3.2ja
Steve Kneizys ≫ Agora.Cgi Version3.2k
Steve Kneizys ≫ Agora.Cgi Version3.2l
Steve Kneizys ≫ Agora.Cgi Version3.2m
Steve Kneizys ≫ Agora.Cgi Version3.2n
Steve Kneizys ≫ Agora.Cgi Version3.2p
Steve Kneizys ≫ Agora.Cgi Version3.2q
Steve Kneizys ≫ Agora.Cgi Version3.2r
Steve Kneizys ≫ Agora.Cgi Version3.3a
Steve Kneizys ≫ Agora.Cgi Version3.3b
Steve Kneizys ≫ Agora.Cgi Version3.3c
Steve Kneizys ≫ Agora.Cgi Version3.3d
Steve Kneizys ≫ Agora.Cgi Version3.3e
Steve Kneizys ≫ Agora.Cgi Version3.3f
Steve Kneizys ≫ Agora.Cgi Version3.3i
Steve Kneizys ≫ Agora.Cgi Version3.3j
Steve Kneizys ≫ Agora.Cgi Version4.0
Steve Kneizys ≫ Agora.Cgi Version4.0a
Steve Kneizys ≫ Agora.Cgi Version4.0b
Steve Kneizys ≫ Agora.Cgi Version4.0c
Steve Kneizys ≫ Agora.Cgi Version4.0d
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.67% | 0.889 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|