CVE-2002-1085 identifies multiple cross-site scripting (XSS) vulnerabilities affecting VisualShapers ezContents version 1.41 and earlier. Rated with a CVSS score of 7.5, this flaw allows unauthenticated remote attackers to execute arbitrary scripts or steal session cookies via low-complexity vectors, including the application's diary function. Current intelligence indicates no active exploitation, public exploit code, or significant community discussion, and the vulnerability is not present in the CISA Known Exploited Vulnerabilities catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.41CPE matchmatch criteria | cpe:2.3:a:visualshapers:ezcontents:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.