Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-0771

Overview

Vulnerability Score 6.4 6.4
CVE Id CVE-2002-0771
Last Modified 05 Sep 2008 04:28:54
Published 12 Aug 2002 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2002-0771

Summary

Cross-site scripting vulnerability in viewcvs.cgi for ViewCVS 0.9.2 allows remote attackers to inject script and steal cookies via the (1) cvsroot or (2) sortby parameters.

Vulnerable Systems

Application

  • Viewcvs 0.8

  • Viewcvs 0.9

  • Viewcvs 0.9.1

  • Viewcvs 0.9.2


References

BID - 4818

XF - viewcvs-css(9112)

BUGTRAQ - 20020518 cross-site scripting bug of ViewCVS


Last Updated: 27 May 2016 10:37:04