Lucene search

K
cveMitreCVE-2002-0544
HistoryJul 03, 2002 - 4:00 a.m.

CVE-2002-0544

2002-07-0304:00:00
mitre
web.nvd.nist.gov
36
aprelium abyss web server
cve-2002-0544
plaintext password
local users access
nvd.

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0

Percentile

15.7%

Aprelium Abyss Web Server (abyssws) before 1.0.3 stores the administrative console password in plaintext in the abyss.conf file, which allows local users with access to the file to gain privileges.

Affected configurations

Nvd
Node
aprelium_technologiesabyss_web_serverMatch1.0
VendorProductVersionCPE
aprelium_technologiesabyss_web_server1.0cpe:2.3:a:aprelium_technologies:abyss_web_server:1.0:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0

Percentile

15.7%

Related for CVE-2002-0544