Back to Database
Status published
High
CVE-2002-0319
Cross-site scripting vulnerability in edituser.php for pforum 1.14 and earlier...
Vulnerability Description
Cross-site scripting vulnerability in edituser.php for pforum 1.14 and earlier allows remote attackers to execute script and steal cookies from other users via Javascript in a username.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2002-0319
Credits & Attribution
No credits recorded in the NVD database.
References
More from powie
View All →CVE-2012-6524
SQL injection vulnerability in kommentar.php in pGB 2.12 allows remote...
High
7.5
CVE-2012-1211
Cross-site scripting (XSS) vulnerability in pfile/kommentar.php in Powie pFile 1.02...
Medium
4.3
CVE-2012-1210
SQL injection vulnerability in pfile/file.php in Powie pFile 1.02 allows...
High
7.5
CVE-2008-5269
SQL injection vulnerability in index.php in pSys 0.7.0 alpha allows...
High
7.5
CVE-2008-4357
SQL injection vulnerability in linkto.php in Powie pLink 2.07 allows...
High
7.5
Affected Vendor
powie
View all reports →Affected Software
pforum
Vulnerable Versions:
1.11, 1.12, 1.13, 1.14
Timeline
Official Publish:
May 3rd, 2002
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.