CVE-2002-1497
Null HTTP Server < 0.5.0 - Cross-Site Scripting in 404 Error Page
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-1497. PoCs published by Matthew Murphy.
AI-analyzed exploit summary The exploit demonstrates a cross-site scripting (XSS) vulnerability in NullLogic Null HTTPd by embedding malicious script code in a crafted URL. When a user follows the link, the script executes in the context of the hosted site.
Description
Cross-site scripting (XSS) vulnerability in Null HTTP Server 0.5.0 and earlier allows remote attackers to insert arbitrary HTML into a "404 Not Found" response.
Exploits (1)
The exploit demonstrates a cross-site scripting (XSS) vulnerability in NullLogic Null HTTPd by embedding malicious script code in a crafted URL. When a user follows the link, the script executes in the context of the hosted site.