CVE Vulnerabilities

CVE-2001-0995

Published: Aug 31, 2001 | Modified: Oct 10, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

PHProjekt before 2.4a allows remote attackers to perform actions as other PHProjekt users by modifying the ID number in an HTTP request to PHProjekt CGI programs.

Affected Software

Name Vendor Start Version End Version
Phpprojekt Phpprojekt 2.0 2.0
Phpprojekt Phpprojekt 2.0.1 2.0.1
Phpprojekt Phpprojekt 2.1 2.1
Phpprojekt Phpprojekt 2.1a 2.1a
Phpprojekt Phpprojekt 2.2 2.2
Phpprojekt Phpprojekt 2.3 2.3
Phpprojekt Phpprojekt * 2.4a

References