CVE-2002-2377

Sephiroth32 Zap Book - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in addentry.cgi in ZAP 1.0.3 allows remote attackers to inject arbitrary SSi directives, web script, and HTML via the entry field.

Scores

EPSS 0.0041
EPSS Percentile 60.8%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

sephiroth32/zap_book

Timeline

Published Dec 31, 2002
Tracked Since Feb 18, 2026