4.3
CVSSv2

CVE-2002-1799

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in phpRank 1.8 allows remote malicious users to inject arbitrary web script or HTML via the (1) email parameter to add.php or (2) banurl parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

phprank phprank 1.8

Exploits

source: wwwsecurityfocuscom/bid/5945/info phpRank is a freely available web site link sharing script It is available for Unix, Linux, and Microsoft operating systems It has been reported that phpRank is vulnerable to cross-site scripting attacks Under some circumstances, it is possible to force the rendering of arbitrary HTML and scri ...