CVE-2002-1053: XSS
Published Oct 4, 2002
·Updated
Cross-site scripting (XSS) vulnerability in W3C Jigsaw Proxy Server before 2.2.1 allows remote attackers to execute arbitrary script via a URL that contains a reference to a nonexistent host followed by the script, which is included in the resulting error message.
Affected Software
1 affected component
W3C Jigsaw=2.2
Remediation
Patch Available
Patch Available
Event History
Oct 4, 2002
CVE Published
04:00 AM
Apr 2, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1053?
CVE-2002-1053 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2002-1053?
To fix CVE-2002-1053, upgrade the W3C Jigsaw Proxy Server to version 2.2.1 or later.
3
What software is affected by CVE-2002-1053?
CVE-2002-1053 affects the W3C Jigsaw versions prior to 2.2.1.
4
What type of vulnerability is CVE-2002-1053?
CVE-2002-1053 is a cross-site scripting (XSS) vulnerability that allows the execution of arbitrary scripts.
5
Can CVE-2002-1053 be exploited remotely?
Yes, CVE-2002-1053 can be exploited remotely by attackers through specially crafted URLs.