Back
CVE-2002-1006
Cross-site scripting (XSS) vulnerability in BBC Education Text to Speech Internet Enhancer (Betsie) 1.5.11 and earlier allows remote attackers to execute arbitrary web script via parserl.pl.
Published: Oct 4, 2002
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (12)
| Vendor | Product | Version |
|---|---|---|
| bbc_education | betsie | 1.5 |
| bbc_education | betsie | 1.5.1 |
| bbc_education | betsie | 1.5.2 |
| bbc_education | betsie | 1.5.3 |
| bbc_education | betsie | 1.5.4 |
| bbc_education | betsie | 1.5.5 |
| bbc_education | betsie | 1.5.6 |
| bbc_education | betsie | 1.5.7 |
| bbc_education | betsie | 1.5.8 |
| bbc_education | betsie | 1.5.9 |
| bbc_education | betsie | 1.5.10 |
| bbc_education | betsie | 1.5.11 |
GitHub Security Advisory GHSA-gc6g-wh72-rqm2
Cross-site scripting (XSS) vulnerability in BBC Education Text to Speech Internet Enhancer ...
References (8)
- http://archives.neohapsis.com/archives/bugtraq/2002-07/0002.html
- http://www.bbc.co.uk/education/betsie/parser.pl.txt
- http://www.iss.net/security_center/static/9468.php Patch, Vendor Advisory
- http://www.securityfocus.com/bid/5135 Exploit, Patch, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-07/0002.html
- http://www.bbc.co.uk/education/betsie/parser.pl.txt
- http://www.iss.net/security_center/static/9468.php Patch, Vendor Advisory
- http://www.securityfocus.com/bid/5135 Exploit, Patch, Vendor Advisory
Risk Scores
CVSS Score
6.8 / 10
EPSS Score
4.36%
Top 10% most likely to be exploited
Threat Score
28.5 / 100
Data Sources
NVD
EPSS
GitHub