CVE Vulnerabilities

CVE-2001-0995

Published: Aug 31, 2001 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

PHProjekt before 2.4a allows remote attackers to perform actions as other PHProjekt users by modifying the ID number in an HTTP request to PHProjekt CGI programs.

Affected Software

Name Vendor Start Version End Version
Phpprojekt Phpprojekt * 2.4a (including)
Phpprojekt Phpprojekt 2.0 (including) 2.0 (including)
Phpprojekt Phpprojekt 2.0.1 (including) 2.0.1 (including)
Phpprojekt Phpprojekt 2.1 (including) 2.1 (including)
Phpprojekt Phpprojekt 2.1a (including) 2.1a (including)
Phpprojekt Phpprojekt 2.2 (including) 2.2 (including)
Phpprojekt Phpprojekt 2.3 (including) 2.3 (including)

References