Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-1367

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2001-1367
Last Modified 07 Mar 2011 09:07:15
Published 19 Jul 2001 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2001-1367

Summary

The checkAccess function in PHPSlice 0.1.4, and all other versions between 0.1.1 and 0.1.6, does not properly verify the administrative access level, which could allow remote attackers to gain privileges.

Vulnerable Systems

Application

  • Phpslice 0.1.6


References

XF - phpslice-checkaccess-function-privileges(9649)

CONFIRM - http://phpslice.org/comments.php?aid=1031&

VULNWATCH - 20010719 [VulnWatch] Changelog maddness (14 various broken apps)


Last Updated: 27 May 2016 10:36:38