Lucene search

K
cveMitreCVE-2002-0065
HistoryJun 25, 2002 - 4:00 a.m.

CVE-2002-0065

2002-06-2504:00:00
mitre
web.nvd.nist.gov
22
vulnerability
funk software proxy
weak encryption
password recovery
cve-2002-0065

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

High

EPSS

0

Percentile

5.1%

Funk Software Proxy Host 3.x uses weak encryption for the Proxy Host password, which allows local users to gain privileges by recovering the passwords from the PHOST.INI file or the Windows registry.

Affected configurations

Nvd
Node
bindviewnetrcMatch1.0
OR
bindviewnetrcMatch3.06
OR
funk_softwarefunk_software_proxyMatch3.0
OR
funk_softwarefunk_software_proxyMatch3.06
OR
funk_softwarefunk_software_proxyMatch3.09
OR
funk_softwarefunk_software_proxyMatch3.09a
VendorProductVersionCPE
bindviewnetrc1.0cpe:2.3:a:bindview:netrc:1.0:*:*:*:*:*:*:*
bindviewnetrc3.06cpe:2.3:a:bindview:netrc:3.06:*:*:*:*:*:*:*
funk_softwarefunk_software_proxy3.0cpe:2.3:a:funk_software:funk_software_proxy:3.0:*:*:*:*:*:*:*
funk_softwarefunk_software_proxy3.06cpe:2.3:a:funk_software:funk_software_proxy:3.06:*:*:*:*:*:*:*
funk_softwarefunk_software_proxy3.09cpe:2.3:a:funk_software:funk_software_proxy:3.09:*:*:*:*:*:*:*
funk_softwarefunk_software_proxy3.09acpe:2.3:a:funk_software:funk_software_proxy:3.09a:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVE-2002-0065