cbcvebase.
CVE-2002-0938
published 2002-10-04

CVE-2002-0938: Cross-site scripting vulnerability in CiscoSecure ACS 3.0 allows remote attackers to execute arbitrary script or HTML as other web users via the action…

high7.5CVSS 3.1
AVNACLAuNCPIPAP
EXPLOIT
Cross-site scripting vulnerability in CiscoSecure ACS 3.0 allows remote attackers to execute arbitrary script or HTML as other web users via the action argument in a link to setup.exe.

Affected

2 ranges
VendorProductVersion rangeFixed in
ciscosecure_access_control_server
ciscosecure_access_control_server