CVE-2002-0074: High severity Microsoft Internet Information Server vulnerability
Cross-site scripting vulnerability in Help File search facility for Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows remote attackers to embed scripts into another user's session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0074?
CVE-2002-0074 is categorized as a moderate-severity cross-site scripting vulnerability.
How do I fix CVE-2002-0074?
To fix CVE-2002-0074, it is recommended to upgrade to the latest versions of Internet Information Server that do not have this vulnerability.
Which versions of Internet Information Server are affected by CVE-2002-0074?
CVE-2002-0074 affects Internet Information Server versions 4.0, 5.0, and 5.1.
What type of attacks are possible with CVE-2002-0074?
CVE-2002-0074 allows attackers to embed malicious scripts that could execute in another user's session, potentially compromising user data.
Is CVE-2002-0074 still a risk for modern systems?
CVE-2002-0074 poses a risk primarily to legacy systems still running the affected versions of Internet Information Server.