Vulnerabilities > CVE-2002-1494 - Unspecified vulnerability in Aestiva Html OS 2.4
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN aestiva
exploit available
Summary
Cross-site scripting (XSS) vulnerabilities in Aestiva HTML/OS allows remote attackers to insert arbitrary HTML or script by inserting the script after a trailing / character, which inserts the script into the resulting error message.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Aestiva HTML/OS 2.4 Cross-Site Scripting Vulnerability. CVE-2002-1494. Webapps exploit for cgi platform |
id | EDB-ID:21769 |
last seen | 2016-02-02 |
modified | 2002-09-03 |
published | 2002-09-03 |
reporter | [email protected] |
source | https://www.exploit-db.com/download/21769/ |
title | Aestiva HTML/OS 2.4 - Cross-Site Scripting Vulnerability |
References
- http://archives.neohapsis.com/archives/bugtraq/2002-09/0026.html
- http://archives.neohapsis.com/archives/bugtraq/2002-09/0026.html
- http://www.iss.net/security_center/static/10029.php
- http://www.iss.net/security_center/static/10029.php
- http://www.securityfocus.com/bid/5618
- http://www.securityfocus.com/bid/5618