7.5
CVSSv2

CVE-2002-0329

Published: 25/06/2002 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting vulnerability in Snitz Forums 2000 3.3.03 and previous versions allows remote malicious users to execute arbitrary script as other Forums 2000 users via Javascript in an IMG tag.

Vulnerable Product Search on Vulmon Subscribe to Product

snitz communications snitz forums 2000 3.2.03

snitz communications snitz forums 2000 3.3

snitz communications snitz forums 2000 3.3.01

snitz communications snitz forums 2000 3.3.02

snitz communications snitz forums 2000 3.0

snitz communications snitz forums 2000 3.1

Exploits

source: wwwsecurityfocuscom/bid/4192/info Snitz Forums 2000 is ASP-based web forum software It runs on Microsoft Windows operating systems Snitz Forums 2000 allows users to include images in forum messages using image tags, with the following syntax: [img]url of image[/img] It is possible to inject arbitrary script code into forum me ...