CVE-2001-1199 - CVE House
Back to Database
Status published High CVE-2001-1199

Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g,...

Vulnerability Description

Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g, when debug mode is enabled, allows remote attackers to execute Javascript on other clients via the cart_id parameter.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2001-1199

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

steve kneizys

View all reports →

Affected Software

agora.cgi
Vulnerable Versions:
3.2, 3.2a, 3.2b, 3.2c, 3.2d, 3.2e, 3.2f, 3.2g, 3.2h, 3.2i, 3.2j, 3.2ja, 3.2k, 3.2l, 3.2m, 3.2n, 3.2p, 3.2q, 3.2r, 3.3a, 3.3b, 3.3c, 3.3d, 3.3e, 3.3f, 3.3i, 3.3j, 4.0, 4.0a, 4.0b, 4.0c, 4.0d

Timeline

Official Publish: June 25th, 2002
Last Modified: August 8th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.