7.5
CVE-2002-0205
- EPSS 0.74%
- Veröffentlicht 16.05.2002 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (CSS) vulnerability in error.asp for Plumtree Corporate Portal 3.5 through 4.5 allows remote attackers to execute arbitrary script on other clients via the "Description" parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Plumtree ≫ Plumtree Corporate Portal Version3.5
Plumtree ≫ Plumtree Corporate Portal Version4.0
Plumtree ≫ Plumtree Corporate Portal Version4.0_sp1
Plumtree ≫ Plumtree Corporate Portal Version4.0i
Plumtree ≫ Plumtree Corporate Portal Version4.0i_sp1
Plumtree ≫ Plumtree Corporate Portal Version4.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.74% | 0.706 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|