VYPR
Unrated severityNVD Advisory· Published Jun 25, 2002· Updated Jun 16, 2026

CVE-2002-0326

CVE-2002-0326

Description

Cross-site scripting vulnerability in BadBlue before 1.6.1 beta allows remote attackers to execute arbitrary script and possibly additional commands via a URL that contains Javascript.

Affected products

6
  • cpe:2.3:a:working_resources_inc.:badblue:1.2.7:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:working_resources_inc.:badblue:1.2.7:*:*:*:*:*:*:*
    • cpe:2.3:a:working_resources_inc.:badblue:1.2.8:*:*:*:*:*:*:*
    • cpe:2.3:a:working_resources_inc.:badblue:1.5:*:*:*:*:*:*:*
    • cpe:2.3:a:working_resources_inc.:badblue:1.5.6_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:working_resources_inc.:badblue:1.6.1_beta:*:*:*:*:*:*:*
    • (no CPE)range: <1.6.1-beta

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.