CVE-2003-5003
A vulnerability was found in ISS BlackICE PC Protection. It has been rated as problematic. Affected by this issue is the Update Handler. The manipulation with an unknown input leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Scoring
- Severity
- MEDIUM
- CVSS base score
- 5
- CVSS vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L
- EPSS probability
- 0.29%
- CWE
- CWE-80
- Published
- 2022-03-28
- Last modified
- 2026-03-16
Affected products
- ISS BlackICE PC Protection
Weakness type
Related vulnerabilities
- CVE-2025-66481 — DeepChat's Incomplete XSS Fix Allows RCE through Mermaid Content
- CVE-2025-53883 — spacewalk-java has various XSS issues on search page
- CVE-2026-32891 — Anchorr Privilege Escalation: Jellyseerr User → Anchorr Admin via Stored XSS
- CVE-2025-54117 — NamelessMC allows Stored Cross-Site Scripting (XSS) in dashboard text editor
- CVE-2025-53835 — XWiki Rendering is vulnerable to XSS attacks through insecure XHTML syntax
- CVE-2026-27458 — LinkAce: Stored XSS in Atom Feed via CDATA Escape in List Description
- CVE-2026-25935 — Vikunja Affected by XSS Via Task Preview
- CVE-2025-66450 — LibreChat JSON Injection in Chat POST Allows Remote Resource Inclusion and PXSS via Image Upload