CVE-2003-0769

ICQ - Cross-Site Scripting via Guestbook Message Field

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2003-0769. PoCs published by Donnie Werner.

AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in ICQ Webfront's guestbook module. It includes example payloads that could be used to steal cookies or redirect users to malicious sites.

Description

Cross-site scripting (XSS) vulnerability in the ICQ Web Front guestbook (guestbook.html) allows remote attackers to insert arbitrary web script and HTML via the message field.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Donnie Werner · textwebappsasp
https://www.exploit-db.com/exploits/23120

This exploit demonstrates a cross-site scripting (XSS) vulnerability in ICQ Webfront's guestbook module. It includes example payloads that could be used to steal cookies or redirect users to malicious sites.

Classification
Working Poc 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: ICQ Webfront (version not specified)
No auth needed
Prerequisites: Access to the guestbook module of ICQ Webfront
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Third Party Advisory, VDB Entry x_refsource_misc
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2003-0769

Scores

EPSS 0.0341
EPSS Percentile 87.3%

Details

Status published
Products (3)
mirabilis/icq 2003a_build3777
mirabilis/icq 2003a_build3799
mirabilis/icq 2003a_build3800
Published Sep 22, 2003
Tracked Since Feb 18, 2026