Vulnerabilities > CVE-2002-2129 - Cross-Site Scripting vulnerability in W-Agora 4.1.5

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
w-agora
exploit available

Summary

Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary web script via an arbitrary form field name containing the script, which is echoed back to the user when displaying the form.

Vulnerable Configurations

Part Description Count
Application
W-Agora
1

Exploit-Db

descriptionW-Agora 4.1.6 EditForm.PHP Cross-Site Scripting Vulnerability. CVE-2002-2129 . Webapps exploit for php platform
idEDB-ID:22109
last seen2016-02-02
modified2002-12-22
published2002-12-22
reporterxatr0z
sourcehttps://www.exploit-db.com/download/22109/
titleW-Agora 4.1.6 EditForm.PHP Cross-Site Scripting Vulnerability