CVE-2002-1651: XSS
Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and steal sensitive information from other clients, possibly due to certain error messages from template pages that use the (1) vformat or (2) vfilter functions.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1651?
CVE-2002-1651 is classified as a moderate severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2002-1651?
To mitigate CVE-2002-1651, it is recommended to apply security patches or updates provided by Verity for Search97.
What types of attacks can CVE-2002-1651 allow?
CVE-2002-1651 can allow remote attackers to perform cross-site scripting (XSS) attacks, injecting arbitrary web content into user sessions.
Which versions of Verity Search97 are affected by CVE-2002-1651?
CVE-2002-1651 affects Verity Search97 version 2.1.
What functions are related to the CVE-2002-1651 vulnerability?
The CVE-2002-1651 vulnerability is related to the vformat and vfilter functions as they can lead to script injection.