Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-0425

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2001-0425
Last Modified 05 Sep 2008 04:24:04
Published 27 Jun 2001 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2001-0425

Summary

AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.

Vulnerable Systems

Application

  • Adcycle 0.77

  • Adcycle 0.78b


References

BUGTRAQ - 20010219 Adcycle 0.78b Authentication

BID - 2393


Last Updated: 27 May 2016 10:36:16