7.5
CVSSv2

CVE-2002-0731

Published: 12/08/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting vulnerability in demonstration scripts for vqServer allows remote malicious users to execute arbitrary script via a link that contains the script in arguments to demo scripts such as respond.pl.

Vulnerable Product Search on Vulmon Subscribe to Product

vqsoft vqserver 1.9

vqsoft vqserver 1.9.30

vqsoft vqserver 1.9.47

vqsoft vqserver 1.9.55

Exploits

source: wwwsecurityfocuscom/bid/4573/info vqServer is a HTTP server implemented in Java vqServer is available on any architecture supporting Java, including Linux and Microsoft Windows Reportedly, numerous default CGI scripts included with vqServer suffer from script injection issues, including cross site scripting and the ability to i ...