Lucene search

K
cveMitreCVE-2002-1753
HistoryJun 21, 2005 - 4:00 a.m.

CVE-2002-1753

2005-06-2104:00:00
CWE-94
mitre
web.nvd.nist.gov
23
cve-2002-1753
csnewspro
cgi
cgiscript.net
perl
code execution
security vulnerability
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.9

Confidence

Low

EPSS

0.003

Percentile

65.9%

csNewsPro.cgi in CGIScript.net csNews Professional (csNewsPro) allows remote attackers to execute arbitrary Perl code via the setup parameter, which is processed by the Perl eval function.

Affected configurations

Nvd
Node
cgiscriptcsnews_professionalMatch1.0
VendorProductVersionCPE
cgiscriptcsnews_professional1.0cpe:2.3:a:cgiscript:csnews_professional:1.0:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.9

Confidence

Low

EPSS

0.003

Percentile

65.9%

Related for CVE-2002-1753