← All CVEs

CVE-2002-1795

medium · 4.3

Cross-site scripting (XSS) vulnerability in connect.asp in Microsoft Terminal Services Advanced Client (TSAC) ActiveX control allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

4.3
CVSS
16.8%
EPSS (exploit prob.)
97th
EPSS percentile
2002-12-31
Published

AV:N/AC:M/Au:N/C:N/I:P/A:N

Affected products

VendorProductAffected versions
microsofttsac_activex_controlall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2002-1795