Lucene search

K
nvd[email protected]NVD:CVE-2002-0776
HistoryAug 12, 2002 - 4:00 a.m.

CVE-2002-0776

2002-08-1204:00:00
web.nvd.nist.gov

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7 High

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.4%

getuserdesc.asp in Hosting Controller 2002 allows remote attackers to change the passwords of arbitrary users and gain privileges by modifying the username parameter, as addressed by the “UpdateUser” hot fix.

Affected configurations

NVD
Node
hosting_controllerhosting_controllerMatch2002

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7 High

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.4%

Related for NVD:CVE-2002-0776