CVE-2003-1271 describes a Cross-Site Scripting (XSS) vulnerability in AN HTTP 1.41e, allowing remote attackers to inject and execute arbitrary web script or HTML in a user's browser through a crafted URL. This vulnerability has a CVSS score of 4.3, indicating a medium attack complexity and potential for partial integrity impact, as it requires user interaction. While not listed on CISA's KEV catalog, an exploit is publicly available on ExploitDB, and it has garnered significant community discussion with 10 mentions. Despite its age, the presence of public exploit code and community interest suggests a potential for exploitation if the affected software is still in use.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.41eCPE matchmatch criteria | cpe:2.3:a:an:an-http:1.41e:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:N/I:P/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.