5.8
CVE-2003-1238
- EPSS 0.64%
- Veröffentlicht 31.12.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and earlier allows remote attackers to steal authentication information via cookies by injecting arbitrary HTML or script into op of the (1) Team, (2) News, and (3) Liens modules.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Nuked-klan ≫ Nuked-klan Version1.2
Nuked-klan ≫ Nuked-klan Version1.2_beta
Nuked-klan ≫ Nuked-klan Version1.3
Nuked-klan ≫ Nuked-klan Version1.3_beta
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.64% | 0.696 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.8 | 8.6 | 4.9 |
AV:N/AC:M/Au:N/C:P/I:P/A:N
|