4.3
CVE-2002-1929
- EPSS 1.91%
- Veröffentlicht 31.12.2002 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:00:19
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting (XSS) vulnerability in pafiledb.php in PHP Arena paFileDB 1.1.3 through 3.0 allows remote attackers to inject arbitrary web script or HTML via the query string in the (1) rate, (2) email, or (3) download actions.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.91% | 0.771 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://online.securityfocus.com/archive/1/296387
http://www.iss.net/security_center/static/10416.php
http://www.securiteam.com/unixfocus/6J00Q0A5PK.html
http://www.securityfocus.com/bid/6018
http://www.securityfocus.com/bid/6019
http://www.securityfocus.com/bid/6020