CVE-2003-1371

Nuked-klan - XSS

Title source: rule

Description

Nuked-Klan 1.3b, and possibly earlier versions, allows remote attackers to obtain sensitive server information via an op parameter set to phpinfo for the (1) Team, (2) News, or (3) Liens modules.

Exploits (1)

exploitdb WRITEUP VERIFIED
by gregory Le Bras · textwebappsphp
https://www.exploit-db.com/exploits/22277

Scores

EPSS 0.0215
EPSS Percentile 84.1%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

nuked-klan/nuked-klan

Timeline

Published Dec 31, 2003
Tracked Since Feb 18, 2026