peter bassill · operator
$ cve CVE-2001-0991 JSON

CVE-2001-0991 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 7.1% (pctl 94)

Patch early

A public exploit exists.

Description

Cross-site scripting vulnerability in Proxomitron Naoko-4 BetaFour and earlier allows remote attackers to execute arbitrary script on other clients via an incorrect URL containing the malicious script, which is printed back in an error message.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS7.1% — more likely to be exploited than 94% of all CVEs
On CISA KEVno
Public exploityes
Published2001-07-24
Last modified2026-06-16

Affected (1)

VendorProduct
scott r. lemmonproxomitron naoko-4

Public exploits

SourceTitleDate
exploit-dbProxomitron Naoko-4 - Cross-Site Scripting2001-07-24

References

→ the Explorer  ·  watch your stack  ·  NVD