CVE-2002-2343
Published Dec 31, 2002
Last updated 16 years ago
Overview
- Description
- Cross-site scripting (XSS) vulnerability in NOCC 0.9 through 0.9.5 allows remote attackers to inject arbitrary web script or HTML via email messages.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:nocc:nocc:0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A7FED7A1-4CC2-4113-A5FE-8CB4DBCAE01A" }, { "criteria": "cpe:2.3:a:nocc:nocc:0.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6E581E39-DD0F-48C0-A8CA-B2205128D587" }, { "criteria": "cpe:2.3:a:nocc:nocc:0.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "29A25020-BEED-4B8B-85C0-C302372E914E" }, { "criteria": "cpe:2.3:a:nocc:nocc:0.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D24F300D-8796-4329-9A5F-72C804057379" }, { "criteria": "cpe:2.3:a:nocc:nocc:0.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7D866651-DC70-4F07-BAFE-BB01E5853C14" }, { "criteria": "cpe:2.3:a:nocc:nocc:0.9.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "02C9E1B1-7795-41D1-AEE3-21FF919A585E" } ], "operator": "OR" } ] } ]