4.3
CVE-2002-1493
- EPSS 1.74%
- Veröffentlicht 02.04.2003 05:00:00
- Zuletzt bearbeitet 16.06.2026 21:59:25
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in Lycos HTMLGear guestbook allows remote attackers to inject arbitrary script via (1) STYLE attributes or (2) SRC attributes in an IMG tag.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.74% | 0.747 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://archives.neohapsis.com/archives/bugtraq/2002-09/0198.html
http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0132.html
http://www.securityfocus.com/bid/5728
https://exchange.xforce.ibmcloud.com/vulnerabilities/12235