CVE-2002-1181: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the administrative web pages for Microsoft Internet Information Server (IIS) 4.0 through 5.1 allow remote attackers to execute HTML script as other users through (1) a certain ASP file in the IISHELP virtual directory, or (2) possibly other unknown attack vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1181?
CVE-2002-1181 is considered a high-severity vulnerability due to its potential to allow remote attackers to execute scripts as other users.
How do I fix CVE-2002-1181?
To remediate CVE-2002-1181, it is recommended to upgrade to a patched version of Microsoft Internet Information Services or apply available patches.
What systems are affected by CVE-2002-1181?
CVE-2002-1181 affects Microsoft Internet Information Server versions 4.0 and 5.0.
Can CVE-2002-1181 be exploited remotely?
Yes, CVE-2002-1181 can be exploited remotely, allowing attackers to perform cross-site scripting attacks.
What types of attacks are possible with CVE-2002-1181?
CVE-2002-1181 can lead to cross-site scripting attacks, enabling an attacker to execute malicious HTML and scripts in the context of other users.