CVE-2002-0920
N/A
N/A
Summary
CGIScript.net csPassword.cgi stores usernames and unencrypted passwords in the password.cgi.tmp temporary file while modifying data, which could allow local users (and possibly remote attackers) to gain privileges by stealing the file before it has been processed.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/bid/4889
- http://online.securityfocus.com/archive/1/274727
- http://www.iss.net/security_center/static/9223.php
References
- http://www.securityfocus.com/bid/4889
- http://online.securityfocus.com/archive/1/274727
- http://www.iss.net/security_center/static/9223.php
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.