Vulnerability Details CVE-2004-0681
Multiple cross-site scripting (XSS) vulnerabilities in (1) comersus_customerAuthenticateForm.asp, (2) comersus_backoffice_message.asp, (3) comersus_supportError.asp, or (4) comersus_message.asp in Comersus Cart 5.09 allow remote attackers to execute web script as other users via the message parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.02
EPSS Ranking 78.6%
CVSS Severity
CVSS v2 Score 6.8
Products affected by CVE-2004-0681
-
cpe:2.3:a:comersus_open_technologies:comersus_cart:5.09