CVE-2002-1685: XSS
Cross-site scripting vulnerability (XSS) in BadBlue Enterprise Edition and Personal Edition 1.7 and 1.7.2 allows remote attackers to execute arbitrary script as other users by injecting script into ext.dll ISAPI.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1685?
CVE-2002-1685 is classified as a medium severity vulnerability due to its potential for cross-site scripting (XSS) attacks.
How can I fix CVE-2002-1685?
To fix CVE-2002-1685, upgrade to BadBlue Enterprise Edition or Personal Edition version 1.7.3 or later.
What types of software are affected by CVE-2002-1685?
CVE-2002-1685 affects BadBlue versions 1.7 and 1.7.2 for both Enterprise and Personal Editions.
What is cross-site scripting in the context of CVE-2002-1685?
Cross-site scripting in CVE-2002-1685 allows attackers to inject malicious scripts into web pages viewed by other users.
Who can exploit CVE-2002-1685?
Remote attackers can exploit CVE-2002-1685 to execute arbitrary scripts on behalf of other users.