CVE-2001-0521 describes a critical vulnerability in Aladdin eSafe Gateway versions 3.0 and earlier. This flaw allows remote attackers to bypass HTML SCRIPT filtering by using UNICODE encoding within SCRIPT tags. With a CVSS score of 7.5 (HIGH), it presents a significant risk, enabling unauthorized access, data manipulation, and denial of service. While not listed in CISA's KEV catalog, public exploit code exists, and the vulnerability garners notable community discussion, indicating potential for exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.0CPE matchmatch criteria | cpe:2.3:a:aladdin_knowledge_systems:esafe_gateway:3.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.