CVE-2001-1521: XSS
Published Dec 31, 2001
·Updated
Cross-site scripting (XSS) vulnerability in user.php in PostNuke 0.64 allows remote attackers to inject arbitrary web script or HTML via the uname parameter.
Affected Software
3 affected components
Postnuke Software Foundation Postnuke=0.62
Postnuke Software Foundation Postnuke=0.63
Postnuke Software Foundation Postnuke=0.64
Event History
Dec 31, 2001
CVE Published
05:00 AM
Jul 14, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1521?
The severity of CVE-2001-1521 is categorized as moderate due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2001-1521?
To fix CVE-2001-1521, upgrade PostNuke to version 0.65 or later which addresses the XSS vulnerability.
3
Who is affected by CVE-2001-1521?
CVE-2001-1521 affects users of PostNuke versions 0.62, 0.63, and 0.64.
4
What type of vulnerability is CVE-2001-1521?
CVE-2001-1521 is a cross-site scripting (XSS) vulnerability.
5
Can CVE-2001-1521 be exploited remotely?
Yes, CVE-2001-1521 can be exploited remotely by attackers to inject arbitrary web scripts or HTML.