7.5
CVE-2002-0205
- EPSS 0.74%
- Veröffentlicht 16.05.2002 04:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (CSS) vulnerability in error.asp for Plumtree Corporate Portal 3.5 through 4.5 allows remote attackers to execute arbitrary script on other clients via the "Description" parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Plumtree ≫ Plumtree Corporate Portal Version3.5
Plumtree ≫ Plumtree Corporate Portal Version4.0
Plumtree ≫ Plumtree Corporate Portal Version4.0_sp1
Plumtree ≫ Plumtree Corporate Portal Version4.0i
Plumtree ≫ Plumtree Corporate Portal Version4.0i_sp1
Plumtree ≫ Plumtree Corporate Portal Version4.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.74% | 0.706 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|