Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-0513

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2002-0513
Last Modified 05 Sep 2008 04:28:13
Published 12 Aug 2002 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2002-0513

Summary

The PHP administration script in popper_mod 1.2.1 and earlier relies on Apache .htaccess authentication, which allows remote attackers to gain privileges if the script is not appropriately configured by the administrator.

Vulnerable Systems

Application

  • Symatec Popper Mod 1.0

  • Symatec Popper Mod 1.2

  • Symatec Popper Mod 1.2.1


References

BID - 4412

XF - symatec-popper-admin-access(8746)

CONFIRM - http://www.symatec-computer.com/forums/viewtopic.php?t=14

BUGTRAQ - 20020330 popper_mod 1.2.1 and previous accounts compromise


Last Updated: 27 May 2016 10:36:57