CVE-2002-1651
Last modified
CVE-2002-1651 is a vulnerability of currently unknown severity. Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and steal sensitive information from other clients, possibly due to certain error messages from template pages that use the (1) vformat or (2) vfilter functions.. EPSS estimates a 1.34% chance of exploitation in the next 30 days.
Description
Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and steal sensitive information from other clients, possibly due to certain error messages from template pages that use the (1) vformat or (2) vfilter functions.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Verity | Search97 | 2.1 |
References
- http://www.kb.cert.org/vuls/id/636431Patch, US Government Resource
- http://www.kb.cert.org/vuls/id/636431Patch, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-1651?
How severe is CVE-2002-1651?
How do I fix CVE-2002-1651?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-1645Buffer overflow in the URL catcher feature for SSH Secure Sh…
- CVE-2002-1646SSH Secure Shell for Servers 3.0.0 to 3.1.1 allows remote at…
- CVE-2002-1647The quick login feature in Slash Slashcode does not redirect…
- CVE-2002-1648Cross-site request forgery (CSRF) vulnerability in compose.p…
- CVE-2002-1649Cross-site scripting (XSS) vulnerability in read_body.php in…
- CVE-2002-1650The spell checker plugin (check_me.mod.php) for SquirrelMail…
- CVE-2002-1652Buffer overflow in cgicso.c for cgiemail 1.6 allows remote a…
- CVE-2002-1653Farm9 Cryptcat, when started in server mode with the -e opti…
- CVE-2002-1654iPlanet Web Server Enterprise Edition and Netscape Enterpris…
- CVE-2002-1655The Web Publishing feature in Netscape Enterprise Server 3.x…
- CVE-2002-1656X-News (x_news) 1.1 and earlier allows attackers to authenti…
- CVE-2002-1657PostgreSQL uses the username for a salt when generating pass…7.5
Are you affected by CVE-2002-1651?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
