CVE-2003-0615

Cross-site scripting (XSS) vulnerability in start_form() of CGI.pm allows remote attackers to insert web script via a URL that is fed into the form's action parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:cgi.pm:cgi.pm:2.73:*:*:*:*:*:*:*
cpe:2.3:a:cgi.pm:cgi.pm:2.74:*:*:*:*:*:*:*
cpe:2.3:a:cgi.pm:cgi.pm:2.75:*:*:*:*:*:*:*
cpe:2.3:a:cgi.pm:cgi.pm:2.76:*:*:*:*:*:*:*
cpe:2.3:a:cgi.pm:cgi.pm:2.78:*:*:*:*:*:*:*
cpe:2.3:a:cgi.pm:cgi.pm:2.79:*:*:*:*:*:*:*
cpe:2.3:a:cgi.pm:cgi.pm:2.93:*:*:*:*:*:*:*
cpe:2.3:a:cgi.pm:cgi.pm:2.751:*:*:*:*:*:*:*
cpe:2.3:a:cgi.pm:cgi.pm:2.753:*:*:*:*:*:*:*
cpe:2.3:a:openpkg:openpkg:1.2:*:*:*:*:*:*:*
cpe:2.3:a:openpkg:openpkg:1.3:*:*:*:*:*:*:*
cpe:2.3:a:openpkg:openpkg:current:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:debian:debian_linux:3.0:*:alpha:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:arm:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:hppa:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:ia-32:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:ia-64:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:m68k:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:mips:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:mipsel:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:ppc:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:s-390:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:sparc:*:*:*:*:*

History

No history.

Information

Published : 2003-08-27 04:00

Updated : 2023-12-10 10:17


NVD link : CVE-2003-0615

Mitre link : CVE-2003-0615

CVE.ORG link : CVE-2003-0615


JSON object : View

Products Affected

openpkg

  • openpkg

cgi.pm

  • cgi.pm

debian

  • debian_linux