Lucene search

K
cve[email protected]CVE-2004-1567
HistoryFeb 20, 2005 - 5:00 a.m.

CVE-2004-1567

2005-02-2005:00:00
web.nvd.nist.gov
18
silent storm portal
profile.php
cve-2004-1567
remote attackers
privilege escalation

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7 High

AI Score

Confidence

High

0.051 Low

EPSS

Percentile

93.0%

profile.php in Silent Storm Portal 2.1 and 2.2 allows remote attackers to gain privileges by setting the mail parameter to 1, which is the value for an administrator.

Affected configurations

NVD
Node
silent-stormsilent-storm_portalMatch2.1
OR
silent-stormsilent-storm_portalMatch2.2

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7 High

AI Score

Confidence

High

0.051 Low

EPSS

Percentile

93.0%

Related for CVE-2004-1567