CVE-2002-0521

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/08/2002
Last modified:
20/11/2024

Description

Cross-site scripting vulnerabilities in ASP-Nuke RC2 and earlier allow remote attackers to execute script or gain privileges as other ASP-Nuke users via script in (1) the name parameter in downloads.asp, (2) the message parameter in Post.asp, or (3) a web site URL in profile.asp.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:asp-nuke:asp-nuke:rc1:*:*:*:*:*:*:*
cpe:2.3:a:asp-nuke:asp-nuke:rc2:*:*:*:*:*:*:*