← All CVEs

CVE-2003-0712

medium · 4.3

Cross-site scripting (XSS) vulnerability in the HTML encoding for the Compose New Message form in Microsoft Exchange Server 5.5 Outlook Web Access (OWA) allows remote attackers to execute arbitrary web script.

4.3
CVSS
19.9%
EPSS (exploit prob.)
97th
EPSS percentile
2003-11-17
Published

AV:N/AC:M/Au:N/C:N/I:P/A:N

Weaknesses

CWE-79

Affected products

VendorProductAffected versions
microsoftexchange_server5.5
microsoftexchange_server5.5
microsoftexchange_server5.5
microsoftexchange_server5.5
microsoftexchange_server5.5

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2003-0712