CVE-2002-0326: High severity working resources inc. badblue vulnerability
Published May 3, 2002
·Updated
Cross-site scripting vulnerability in BadBlue before 1.6.1 beta allows remote attackers to execute arbitrary script and possibly additional commands via a URL that contains Javascript.
Affected Software
5 affected components
Working Resources Inc. BadBlue=1.6.1_beta
Working Resources Inc. BadBlue=1.5
Working Resources Inc. BadBlue=1.5.6_beta
Working Resources Inc. BadBlue=1.2.8
Working Resources Inc. BadBlue=1.2.7
Remediation
Patch Available
Patch Available
Event History
May 3, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0326?
CVE-2002-0326 has a medium severity rating due to its potential for remote script execution.
2
How do I fix CVE-2002-0326?
To fix CVE-2002-0326, upgrade BadBlue to version 1.6.1 beta or later.
3
Which versions of BadBlue are affected by CVE-2002-0326?
CVE-2002-0326 affects BadBlue versions 1.5, 1.5.6 beta, 1.2.8, and 1.2.7.
4
Can CVE-2002-0326 allow attackers to execute commands?
Yes, CVE-2002-0326 can allow attackers to execute arbitrary scripts and potentially additional commands via specially crafted URLs.
5
What type of vulnerability is CVE-2002-0326 classified as?
CVE-2002-0326 is classified as a cross-site scripting (XSS) vulnerability.