Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2003-0162

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2003-0162
Last Modified 05 Sep 2008 04:33:38
Published 02 Apr 2003 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2003-0162

Summary

Ecartis 1.0.0 (formerly listar) before snapshot 20030227 allows remote attackers to reset passwords of other users and gain privileges by modifying hidden form fields in the HTML page.

Vulnerable Systems

Application

  • Ecartis 1.0.0 Snapshot 2002-10-13


References

BID - 6971

XF - ecartis-password-reset(11431)

DEBIAN - DSA-271

BUGTRAQ - 20030303 Re: Ecardis Password Reseting Vulnerability

BUGTRAQ - 20030227 Ecardis Password Reseting Vulnerability


Last Updated: 27 May 2016 10:37:48