6.8

CVE-2002-1307

Cross-site scripting vulnerability (XSS) in MHonArc 2.5.12 and earlier allows remote attackers to insert script or HTML via an email message with the script in a MIME header name.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mhonarc ≫ Mhonarc Version 2.4.4
Mhonarc ≫ Mhonarc Version 2.5.2
Mhonarc ≫ Mhonarc Version 2.5.12
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.02% 0.893
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.debian.org/security/2002/dsa-199
Patch
Vendor Advisory
http://www.mhonarc.org/archive/cgi-bin/mesg.cgi?a=mhonarc-users&i=200210211713.g9LHDXE02256%40mcguire.earlhood.com
http://www.osvdb.org/7353
http://www.securityfocus.com/bid/6204
https://exchange.xforce.ibmcloud.com/vulnerabilities/10666