CVE-2002-2129

Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary web script via an arbitrary form field name containing the script, which is echoed back to the user when displaying the form.
Configurations

Configuration 1 (hide)

cpe:2.3:a:w-agora:w-agora:4.1.5:*:*:*:*:*:*:*

History

20 Nov 2024, 23:42

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2002-12/0222.html - () http://archives.neohapsis.com/archives/bugtraq/2002-12/0222.html -
References () http://archives.neohapsis.com/archives/bugtraq/2002-12/0225.html - () http://archives.neohapsis.com/archives/bugtraq/2002-12/0225.html -
References () http://www.securityfocus.com/bid/6464 - Exploit () http://www.securityfocus.com/bid/6464 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/10920 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/10920 -

Information

Published : 2002-12-31 05:00

Updated : 2024-11-20 23:42


NVD link : CVE-2002-2129

Mitre link : CVE-2002-2129

CVE.ORG link : CVE-2002-2129


JSON object : View

Products Affected

w-agora

  • w-agora