CVE-2002-1334
MEDIUM 6.8EPSS 4.7%
Cross-site scripting (XSS) vulnerability in BizDesign ImageFolio 3.01 and earlier allows remote attackers to execute arbitrary web script as other users via (1) the direct parameter in imageFolio.cgi, or (2) nph-build.cgi.
- CVSS v2.0
- 6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P - EPSS
- 4.69% chance of exploitation in the next 30 days, 91th percentile
- Published
- 2002-12-03
- Updated
- 2024-08-08