4.3
CVSSv2

CVE-2002-2348

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in athcgi.exe in Authoria HR allows remote malicious users to inject arbitrary web script or HTML via the command parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

authoria authoria authoria_hr_suite

Exploits

source: wwwsecurityfocuscom/bid/5932/info Authoria HR Suite is prone to cross-site scripting attacks An attacker could construct a malicious link to a vulnerable host that contains arbitrary HTML and script code If this link is visited by a web user, the attacker-supplied code will be rendered in their browser, in the security context ...