CVE-2002-2129
Last modified
CVE-2002-2129 is a vulnerability of currently unknown severity. Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary web script via an arbitrary form field name containing the script, which is echoed back to the user when displaying the form.. EPSS estimates a 3.61% chance of exploitation in the next 30 days.
Description
Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary web script via an arbitrary form field name containing the script, which is echoed back to the user when displaying the form.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| W-Agora | W-Agora | 4.1.5 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-2129?
How severe is CVE-2002-2129?
How do I fix CVE-2002-2129?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-2123PHP remote file inclusion vulnerability in publish_xp_docs.p…
- CVE-2002-2124The recvn and sendn functions in nylon 0.2 do not check when…
- CVE-2002-2125Internet Explorer 6.0 does not warn users when an expired ce…
- CVE-2002-2126restrictEnabled in Integrity Protection Driver (IPD) 1.2 del…
- CVE-2002-2127Integrity Protection Driver (IPD) 1.2 and earlier blocks acc…
- CVE-2002-2128editform.php in w-Agora 4.1.5 allows local users to execute …
- CVE-2002-2130publish_xp_docs.php in Gallery 1.3.2 allows remote attackers…
- CVE-2002-2131Directory traversal vulnerability in Perl-HTTPd before 1.0.2…
- CVE-2002-2132Windows File Protection (WFP) in Windows 2000 and XP does no…
- CVE-2002-2133Telindus 1100 ASDL router running firmware 6.0.x uses weak e…
- CVE-2002-2134haut.php in PEEL 1.0b allows remote attackers to execute arb…
- CVE-2002-2135Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
Are you affected by CVE-2002-2129?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
