CVE-2001-0991

Scott R. Lemmon Proxomitron Naoko-4 - XSS

Title source: rule
STIX 2.1

Description

Cross-site scripting vulnerability in Proxomitron Naoko-4 BetaFour and earlier allows remote attackers to execute arbitrary script on other clients via an incorrect URL containing the malicious script, which is printed back in an error message.

Exploits (1)

exploitdb WRITEUP VERIFIED
by TAKAGI Hiromitsu · textremotemultiple
https://www.exploit-db.com/exploits/21025

References (3)

Core 3
Core References
Patch, Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/198954
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/3087
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/6887

Scores

EPSS 0.1699
EPSS Percentile 95.0%

Details

Status published
Products (4)
scott_r._lemmon/proxomitron_naoko-4 beta1
scott_r._lemmon/proxomitron_naoko-4 beta2
scott_r._lemmon/proxomitron_naoko-4 beta3
scott_r._lemmon/proxomitron_naoko-4 beta4
Published Jul 24, 2001
Tracked Since Feb 18, 2026