4.3
CVSSv2

CVE-2002-1683

Published: 31/12/2002 Updated: 11/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in BadBlue Personal Edition 1.7.3 allows remote malicious users to execute arbitrary script as other users by injecting script into the cleanSearchString() function.

Vulnerable Product Search on Vulmon Subscribe to Product

working resources inc. badblue personal_1.7.3

Exploits

source: wwwsecurityfocuscom/bid/5179/info BadBlue is a P2P file sharing application distributed by Working Resources It is designed for use on Microsoft Windows operating systems BadBlue is operated through a web interface, generated by an included web server running on the local system A variant to BID 5086 has been reported to exist ...