6.8
CVSSv2

CVE-2002-1315

Published: 29/11/2002 Updated: 18/10/2016
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows remote malicious users to execute web script or HTML as the iPlanet administrator by injecting the desired script into error logs, and possibly escalating privileges by using the XSS vulnerability in conjunction with another issue (CVE-2002-1316).

Vulnerable Product Search on Vulmon Subscribe to Product

iplanet iplanet web server 4.1 sp8

iplanet iplanet web server 4.1

iplanet iplanet web server 4.1 sp11

iplanet iplanet web server 4.1 sp4

iplanet iplanet web server 4.1 sp2

iplanet iplanet web server 4.1 sp5

iplanet iplanet web server 4.1 sp1

iplanet iplanet web server 4.1 sp10

iplanet iplanet web server 4.1 sp7

iplanet iplanet web server 4.1 sp9

iplanet iplanet web server 4.1 sp6

iplanet iplanet web server 4.1 sp3