{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-02T11:23:22.801","vulnerabilities":[{"cve":{"id":"CVE-2003-5001","sourceIdentifier":"psirt@us.ibm.com","published":"2022-03-28T21:15:07.863","lastModified":"2024-11-20T23:47:32.800","vulnStatus":"Modified","cveTags":[{"sourceIdentifier":"psirt@us.ibm.com","tags":["unsupported-when-assigned"]}],"descriptions":[{"lang":"en","value":"A vulnerability was found in ISS BlackICE PC Protection and classified as critical. Affected by this issue is the component Cross Site Scripting Detection. The manipulation as part of POST/PUT/DELETE/OPTIONS Request leads to privilege escalation. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. NOTE: This vulnerability only affects products that are no longer supported by the maintainer"},{"lang":"es","value":"** NO SOPORTADO CUANDO DE ASIGNÓ ** Se ha encontrado una vulnerabilidad en ISS BlackICE PC Protection y Ha sido clasificada como crítica. Este problema afecta al componente Cross Site Scripting Detection. La manipulación como parte de la petición POST/PUT/DELETE/OPTIONS conlleva a una escalada de privilegios. El ataque puede ser lanzado remotamente. La explotación ha sido divulgada al público y puede ser usada. Es recomendado actualizar el componente afectado. NOTA: Esta vulnerabilidad sólo afecta a productos que ya no son soportados por el mantenedor"}],"metrics":{"cvssMetricV31":[{"source":"psirt@us.ibm.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","baseScore":5.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":1.4},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"psirt@us.ibm.com","type":"Secondary","description":[{"lang":"en","value":"CWE-269"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:iss_blackice_pc_protection:-:*:*:*:*:*:*:*","matchCriteriaId":"2FE92ADF-24D4-4B3D-9C9B-2409DD21E3E8"}]}]}],"references":[{"url":"http://www.cgisecurity.com/articles/xss-faq.shtml","source":"psirt@us.ibm.com"},{"url":"http://www.computec.ch/mruef/advisories/black_ice_pc_protection_xss_evasion.txt","source":"psirt@us.ibm.com"},{"url":"https://vuldb.com/?id.104","source":"psirt@us.ibm.com"},{"url":"http://www.cgisecurity.com/articles/xss-faq.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.computec.ch/mruef/advisories/black_ice_pc_protection_xss_evasion.txt","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://vuldb.com/?id.104","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}