CVE-2002-1727
askSam Web Publisher 1 and 4 - Cross-Site Scripting via URL
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-1727. PoCs published by frog.
AI-analyzed exploit summary The exploit describes a cross-site scripting (XSS) vulnerability in askSam Web Publisher versions 1 and 4, where user input is not properly sanitized in error messages. It also includes examples of path disclosure via non-existent file requests.
Description
Cross-site scripting vulnerability (XSS) in (1) as_web.exe and (2) as_web4.exe in askSam Web Publisher 1 and 4 allows remote attackers to execute arbitrary script as other users via a URL.
Exploits (1)
The exploit describes a cross-site scripting (XSS) vulnerability in askSam Web Publisher versions 1 and 4, where user input is not properly sanitized in error messages. It also includes examples of path disclosure via non-existent file requests.