CVE-2002-0733
Cross-site scripting vulnerability in thttpd 2.20 and earlier allows remote attackers to execute arbitrary script via a URL to a nonexistent page, which causes thttpd to insert the script into a 404 error message.
- Affected products
- Thttpd
- Acme Labs Thttpd
- = 2.20b
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 8.0% (94th percentile)
- NVD status
- Modified
- Published
- 2003-04-02
CVE-2002-0733 at NVD
1 known exploit for CVE-2002-0733
Proof-of-concept code and exploit modules indexed by Sploitus