Back to Database
Status published
High
CVE-2001-1199
Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g,...
Vulnerability Description
Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g, when debug mode is enabled, allows remote attackers to execute Javascript on other clients via the cart_id parameter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2001-1199
Credits & Attribution
No credits recorded in the NVD database.
References
More from steve kneizys
View All →Affected Vendor
steve kneizys
View all reports →Affected Software
agora.cgi
Vulnerable Versions:
3.2, 3.2a, 3.2b, 3.2c, 3.2d, 3.2e, 3.2f, 3.2g, 3.2h, 3.2i, 3.2j, 3.2ja, 3.2k, 3.2l, 3.2m, 3.2n, 3.2p, 3.2q, 3.2r, 3.3a, 3.3b, 3.3c, 3.3d, 3.3e, 3.3f, 3.3i, 3.3j, 4.0, 4.0a, 4.0b, 4.0c, 4.0d
Timeline
Official Publish:
June 25th, 2002
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.