PT-2003-1201 · Cafelog · Cafelog B2 Weblog Tool
Publicado
2003-03-18
·
Atualizado
2008-09-05
·
CVE-2002-1464
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
CafeLog b2 Weblog Tool (affected versions not specified)
Description
A cross-site scripting (XSS) issue allows remote attackers to insert arbitrary HTML or script via the
GPC variable. This could potentially lead to unauthorized actions on the affected system.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Cafelog B2 Weblog Tool