Vulnerability Details CVE-2003-1238
Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and earlier allows remote attackers to steal authentication information via cookies by injecting arbitrary HTML or script into op of the (1) Team, (2) News, and (3) Liens modules.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.7%
CVSS Severity
CVSS v2 Score 5.8
Products affected by CVE-2003-1238
-
cpe:2.3:a:nuked-klan:nuked-klan:1.2
-
cpe:2.3:a:nuked-klan:nuked-klan:1.2_beta
-
cpe:2.3:a:nuked-klan:nuked-klan:1.3
-
cpe:2.3:a:nuked-klan:nuked-klan:1.3_beta