peter bassill · operator
$ cve CVE-2003-1506 JSON

CVE-2003-1506 EXPLOIT

4.3
MEDIUM · CVSS 2.0 · EPSS 1.7% (pctl 77)

Patch early

A public exploit exists.

Description

Cross-site scripting (XSS) vulnerability in dansguardian.pl in Adelix CensorNet 3.0 through 3.2 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into the DENIEDURL parameter.

Scoring

CVSS4.3 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
EPSS1.73% — more likely to be exploited than 77% of all CVEs
WeaknessCWE-79
On CISA KEVno
Public exploityes
Published2003-12-31
Last modified2026-06-16

Affected (1)

VendorProduct
daniel barrondansguardian

Public exploits

SourceTitleDate
exploit-dbDansGuardian 2.2.x - Denied URL Cross-Site Scripting2003-10-22

References

→ the Explorer  ·  watch your stack  ·  NVD