CVE Vulnerabilities

CVE-2002-1427

Published: Apr 11, 2003 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The print_html_to_file function in edit.cgi for Easy Homepage Creator 1.0 does not check user credentials, which allows remote attackers to modify home pages of other users.

Affected Software

Name Vendor Start Version End Version
Advanced_easy_homepage_creator Easy_scripts_archive 1.0 (including) 1.0 (including)
Easy_homepage_creator Easy_scripts_archive 1.0 (including) 1.0 (including)

References