5.8
CVE-2003-1238
- EPSS 0.64%
- Veröffentlicht 31.12.2003 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and earlier allows remote attackers to steal authentication information via cookies by injecting arbitrary HTML or script into op of the (1) Team, (2) News, and (3) Liens modules.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Nuked-klan ≫ Nuked-klan Version1.2
Nuked-klan ≫ Nuked-klan Version1.2_beta
Nuked-klan ≫ Nuked-klan Version1.3
Nuked-klan ≫ Nuked-klan Version1.3_beta
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.64% | 0.696 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.8 | 8.6 | 4.9 |
AV:N/AC:M/Au:N/C:P/I:P/A:N
|