CVE Vulnerabilities

CVE-2002-0267

Published: May 29, 2002 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

preferences.php in Simple Internet Publishing System (SIPS) before 0.3.1 allows remote attackers to gain administrative privileges via a linebreak in the theme field followed by the Status::admin command, which causes the Status line to be entered into the password file.

Affected Software

Name Vendor Start Version End Version
Sips Sips 0.2.4 (including) 0.2.4 (including)
Sips Sips 0.3.0 (including) 0.3.0 (including)
Sips Sips 0.3.0pl1 (including) 0.3.0pl1 (including)
Sips Sips 0.3.0pl2 (including) 0.3.0pl2 (including)

References