4.3
CVSSv2

CVE-2002-2073

Published: 31/12/2002 Updated: 18/10/2016
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the default ASP pages on Microsoft Site Server 3.0 on Windows NT 4.0 allows remote malicious users to inject arbitrary web script or HTML via the (1) ctr parameter in Default.asp and (2) the query string to formslogin.asp.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft site server commerce 3.0

microsoft site server 3.0

microsoft windows nt 4.0

Exploits

source: wwwsecurityfocuscom/bid/3999/info Microsoft Site Server is designed to run on Microsoft Windows NT Server platforms It provides a means for users on a corporate intranet to share, publish, and find information Site Server Commerce Edition incorporates the same features as well as providing an interface for e-commerce sites to in ...