Back

CVE-2002-1009

Cross-site scripting vulnerability in PowerBASIC pbcgi.cgi, as included in Lil' HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via the (1) "Name" or (2) "E-mail" parameters.

Published: Oct 4, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (2)

Vendor Product Version
summit_computer_networks lil_http_server 2.1
summit_computer_networks lil_http_server 2.2

GitHub Security Advisory GHSA-p3xh-qp8h-hq67

Cross-site scripting vulnerability in PowerBASIC pbcgi.cgi, as included in Lil' HTTP web server,...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 7.02%

Top 6% most likely to be exploited

Threat Score 32.1 / 100

Data Sources

NVD EPSS GitHub