Back to Database
Status published
Medium
CVE-2002-0771
Cross-site scripting vulnerability in viewcvs.cgi for ViewCVS 0.9.2 allows remote...
Vulnerability Description
Cross-site scripting vulnerability in viewcvs.cgi for ViewCVS 0.9.2 allows remote attackers to inject script and steal cookies via the (1) cvsroot or (2) sortby parameters.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2002-0771
Credits & Attribution
No credits recorded in the NVD database.
References
More from viewcvs
View All →CVE-2005-4831
viewcvs in ViewCVS 0.9.2 allows remote attackers to set the...
Medium
4.3
CVE-2005-4830
CRLF injection vulnerability in viewcvs in ViewCVS 0.9.2 allows remote...
High
7.6
CVE-2004-1062
Multiple cross-site scripting (XSS) vulnerabilities in ViewCVS 0.9.2 allow remote...
Medium
4.3
CVE-2004-0915
Multiple unknown vulnerabilities in viewcvs before 0.9.2, when exporting a...
Medium
5
Affected Vendor
viewcvs
View all reports →Affected Software
viewcvs
Vulnerable Versions:
0.8, 0.9, 0.9.1, 0.9.2
Timeline
Official Publish:
July 26th, 2002
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.