Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2003-0154

Cross-site scripting vulnerabilities (XSS) in bonsai Mozilla CVS query tool allow remote attackers to execute arbitrary web script via (1) the file, root, or rev parameters to cvslog.cgi, (2) the file or root parameters to cvsblame.cgi, (3) various parameters to cvsquery.cgi, (4) the person parameter to showcheckins.cgi, (5) the module parameter to cvsqueryform.cgi, and (6) possibly other attack vectors as identified by Mozilla bug #146244.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.133
EPSS Ranking 93.9%
CVSS Severity
CVSS v2 Score 6.8
References
Products affected by CVE-2003-0154


Contact Us

Shodan ® - All rights reserved