4.3
CVSSv2

CVE-2004-2618

Published: 31/12/2004 Updated: 20/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote malicious users to inject arbitrary web script or HTML via the URI, directly after the initial '/' (slash).

Vulnerable Product Search on Vulmon Subscribe to Product

pegasi web server pegasi web server 0.2.2

Exploits

source: wwwsecurityfocuscom/bid/9847/info Multiple vulnerabilities have been identified in the application that may allow a remote attacker to carry out directory traversal and cross-site scripting attacks A successful cross-site scripting attack may make it possible for an attacker to create a malicious link to a vulnerable site that i ...