Back

CVE-2002-0959

Cross-site scripting vulnerability in Splatt Forum 3.0 allows remote attackers to execute arbitrary script as other users via an [img] tag with a closing quote followed by the script.

Published: Oct 4, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
splatt splatt_forum 3.0

GitHub Security Advisory GHSA-9pw7-g358-h238

Cross-site scripting vulnerability in Splatt Forum 3.0 allows remote attackers to execute...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 7.18%

Top 6% most likely to be exploited

Threat Score 32.2 / 100

Data Sources

NVD EPSS GitHub