First published: Fri Sep 12 2003(Updated: )
Cross-site scripting (XSS) vulnerability in the ICQ Web Front guestbook (guestbook.html) allows remote attackers to insert arbitrary web script and HTML via the message field.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CenterICQ | =2003a_build3777 | |
CenterICQ | =2003a_build3799 | |
CenterICQ | =2003a_build3800 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0769 is classified as a medium-severity vulnerability due to its ability to allow cross-site scripting (XSS) exploits.
To fix CVE-2003-0769, ensure that input validation is implemented and escape user-controlled input in the ICQ Web Front guestbook.
CVE-2003-0769 affects ICQ versions 2003a_build3777, 2003a_build3799, and 2003a_build3800.
CVE-2003-0769 allows remote attackers to execute arbitrary web scripts and HTML through the guestbook message field.
Yes, CVE-2003-0769 can potentially be exploited on all web browsers that can execute cross-site scripting.