Back

CVE-2003-0292

Cross-site scripting (XSS) vulnerability in Inktomi Traffic-Server 5.5.1 allows remote attackers to insert arbitrary web script or HTML into an error page that appears to come from the domain that the client is visiting, aka "Man-in-the-Middle" XSS.

Published: Jun 16, 2003 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
inktomi inktomi_traffic-server 5.5.1

GitHub Security Advisory GHSA-2h7q-cwm3-ww93

Cross-site scripting (XSS) vulnerability in Inktomi Traffic-Server 5.5.1 allows remote attackers...

Risk Scores

CVSS Score 6.8 / 10
EPSS Score 1.61%

Top 26% most likely to be exploited

Threat Score 27.7 / 100

Data Sources

NVD EPSS GitHub