# CVE-2003-1238

## Summary

- **CVE ID:** CVE-2003-1238
- **Severity:** UNKNOWN
- **CVSS Score:** 0.03
- **CWE:** N/A
- **Published:** Nov 16, 2005
- **Last Modified:** Mar 16, 2026

## Description

Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and earlier allows remote attackers to steal authentication information via cookies by injecting arbitrary HTML or script into op of the (1) Team, (2) News, and (3) Liens modules.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://www.iss.net/security_center/static/11420.php)
- [CNA](http://archives.neohapsis.com/archives/bugtraq/2003-03/0275.html)
- [CNA](http://archives.neohapsis.com/archives/bugtraq/2003-02/0276.html)
- [CNA](http://www.securityfocus.com/bid/6916)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.64%
- **EPSS Percentile:** 70.2

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._