CVE-2002-0837

wordtrans 1.1pre8 and earlier in the wordtrans-web package allows remote attackers to (1) execute arbitrary code or (2) conduct cross-site scripting attacks via certain parameters (possibly "dict") to the wordtrans.php script.

Date published : 2002-09-10

http://www.securityfocus.com/bid/5671

http://www.securityfocus.com/bid/5674