4.3
CVE-2003-0404
- EPSS 1.98%
- Veröffentlicht 30.06.2003 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:02:08
- Erkennungen
Multiple Cross Site Scripting (XSS) vulnerabilities in Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, allow remote attackers to insert arbitrary HTML and script via text variables, as demonstrated using the errInfo parameter of the default login template.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Vignette ≫ Content Suite Version 5.0
Vignette ≫ Content Suite Version 6.0
Vignette ≫ Content Suite Version 7.0
Vignette ≫ Storyserver Version 4.0
Vignette ≫ Storyserver Version 4.1
Vignette ≫ Storyserver Version 5.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.98% | 0.779 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://marc.info/?l=bugtraq&m=105406028027360&w=2
http://www.iss.net/security_center/static/12071.php
http://www.s21sec.com/es/avisos/s21sec-023-en.txt
http://www.securityfocus.com/bid/7687