CVE Database
/

CVE-2002-0922

Back to search

CVE-2002-0922

Published: Aug 31, 2002

Modified: Aug 8, 2024

PUBLISHED

Description

CGIScript.net csNews.cgi allows remote attackers to obtain database files via a direct URL-encoded request to (1) default%2edb or (2) default%2edb.style, or remote authenticated users to perform administrative actions via (3) a database parameter set to default%2edb.

VendorProductVersions

n/a

n/a

affected
n/a

References

4991
vdb-entry
x_refsource_BID
4993
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now