6.8
CVE-2002-1334
- EPSS 0.67%
- Veröffentlicht 11.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in BizDesign ImageFolio 3.01 and earlier allows remote attackers to execute arbitrary web script as other users via (1) the direct parameter in imageFolio.cgi, or (2) nph-build.cgi.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bizdesign ≫ Imagefolio Version2.23
Bizdesign ≫ Imagefolio Version2.24
Bizdesign ≫ Imagefolio Version2.26
Bizdesign ≫ Imagefolio Version2.27
Bizdesign ≫ Imagefolio Version3.0.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.67% | 0.706 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|