CVE-2002-0281

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/05/2002
Last modified:
03/04/2025

Description

Cross-site scripting vulnerability in DCP-Portal 4.2 and earlier allows remote attackers to gain privileges of other portal users by providing Javascript in the job information field to user_update.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:codeworx_technologies:dcp-portal:3.7:*:*:*:*:*:*:*
cpe:2.3:a:codeworx_technologies:dcp-portal:4.0:*:*:*:*:*:*:*
cpe:2.3:a:codeworx_technologies:dcp-portal:4.1:*:*:*:*:*:*:*
cpe:2.3:a:codeworx_technologies:dcp-portal:4.2:*:*:*:*:*:*:*