7.5
CVSSv2

CVE-2001-1157

Published: 12/08/2001 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Baltimore Technologies WEBsweeper 4.0 and 4.02 does not properly filter Javascript from HTML pages, which could allow remote malicious users to bypass the filtering via (1) an extra leading < and one or more characters before the SCRIPT tag, or (2) tags using Unicode.

Vulnerable Product Search on Vulmon Subscribe to Product

baltimore technologies websweeper 4.0

baltimore technologies websweeper 4.02