Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary web script via an arbitrary form field name containing the script, which is echoed back to the user when displaying the form.
References
Configurations
History
20 Nov 2024, 23:42
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2002-12/0222.html - | |
References | () http://archives.neohapsis.com/archives/bugtraq/2002-12/0225.html - | |
References | () http://www.securityfocus.com/bid/6464 - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/10920 - |
Information
Published : 2002-12-31 05:00
Updated : 2024-11-20 23:42
NVD link : CVE-2002-2129
Mitre link : CVE-2002-2129
CVE.ORG link : CVE-2002-2129
JSON object : View
Products Affected
w-agora
- w-agora
CWE