CVE-2002-0948

Scripts For Educators MakeBook 2.2 CGI program allows remote attackers to execute script as other visitors, or execute server-side includes (SSI) as the web server, via the (1) Name or (2) Email parameters, which are not properly filtered.
Configurations

Configuration 1 (hide)

cpe:2.3:a:scripts_for_educators:makebook:2.2:*:*:*:*:*:*:*

History

20 Nov 2024, 23:40

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2002-06/0094.html - () http://archives.neohapsis.com/archives/bugtraq/2002-06/0094.html -
References () http://cert.uni-stuttgart.de/archive/bugtraq/2002/06/msg00135.html - () http://cert.uni-stuttgart.de/archive/bugtraq/2002/06/msg00135.html -
References () http://www.iss.net/security_center/static/9356.php - Patch, Vendor Advisory () http://www.iss.net/security_center/static/9356.php - Patch, Vendor Advisory
References () http://www.linguistic-funland.com/scripts/MakeBook/makebook.script - () http://www.linguistic-funland.com/scripts/MakeBook/makebook.script -
References () http://www.securityfocus.com/bid/4996 - () http://www.securityfocus.com/bid/4996 -
References () http://www.tesol.net/scriptmail.html - () http://www.tesol.net/scriptmail.html -

Information

Published : 2002-10-04 04:00

Updated : 2024-11-20 23:40


NVD link : CVE-2002-0948

Mitre link : CVE-2002-0948

CVE.ORG link : CVE-2002-0948


JSON object : View

Products Affected

scripts_for_educators

  • makebook