7.5
CVSSv2

CVE-2001-0991

Published: 24/07/2001 Updated: 19/12/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting vulnerability in Proxomitron Naoko-4 BetaFour and previous versions allows remote malicious users to execute arbitrary script on other clients via an incorrect URL containing the malicious script, which is printed back in an error message.

Vulnerable Product Search on Vulmon Subscribe to Product

scott r. lemmon proxomitron naoko-4 beta3

scott r. lemmon proxomitron naoko-4 beta4

scott r. lemmon proxomitron naoko-4 beta1

scott r. lemmon proxomitron naoko-4 beta2

Exploits

source: wwwsecurityfocuscom/bid/3087/info Proxomitron is a free web proxy server Proxomitron is vulnerable to a cross site scripting attack The condition is present because of the way URLS are displayed in error messages It is possible for script code to be embedded in the error page through a maliciously constructed link When the e ...