CVE-2002-1683

Working Resources. Badblue - XSS

Title source: rule
STIX 2.1

Description

Cross-site scripting (XSS) vulnerability in BadBlue Personal Edition 1.7.3 allows remote attackers to execute arbitrary script as other users by injecting script into the cleanSearchString() function.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Matthew Murphy · textremotewindows
https://www.exploit-db.com/exploits/21599

References (3)

Core 3
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/5179
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://online.securityfocus.com/archive/1/281141
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/9514

Scores

EPSS 0.0040
EPSS Percentile 60.8%

Details

Status published
Products (1)
working_resources_inc./badblue personal_1.7.3
Published Dec 31, 2002
Tracked Since Feb 18, 2026