2.6
CVSSv2

CVE-2002-0292

Published: 31/05/2002 Updated: 18/10/2016
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:P/I:N/A:N

Vulnerability Summary

Cross-site scripting vulnerability in Slash prior to 2.2.5, as used in Slashcode and elsewhere, allows remote malicious users to steal cookies and authentication information from other users via Javascript in a URL, possibly in the formkey field.

Vulnerable Product Search on Vulmon Subscribe to Product

open source development network slashcode 2.1

open source development network slashcode 2.1.1

open source development network slashcode 2.0

open source development network slashcode 2.2.2

open source development network slashcode 2.2.3

open source development network slashcode 2.2.4

open source development network slashcode

open source development network slashcode 2.2

open source development network slashcode 2.2.1