CVE Vulnerabilities

CVE-2001-0425

Published: Jun 27, 2001 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.

Affected Software

Name Vendor Start Version End Version
Adcycle Adcycle 0.77 (including) 0.77 (including)
Adcycle Adcycle 0.78b (including) 0.78b (including)

References