Vulnerabilities > CVE-2002-0095 - Unspecified vulnerability in Fraunhofer FIT Bscw 3.4/4.0/4.0.6

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
fraunhofer-fit
exploit available

Summary

The default configuration of BSCW (Basic Support for Cooperative Work) 3.x and possibly version 4 enables user self registration, which could allow remote attackers to upload files and possibly join a user community that was intended to be closed.

Vulnerable Configurations

Part Description Count
Application
Fraunhofer_Fit
3

Exploit-Db

descriptionBSCW 3.4/4.0 Insecure Default Installation Vulnerability. CVE-2002-0095. Remote exploits for multiple platform
idEDB-ID:21197
last seen2016-02-02
modified2002-01-03
published2002-01-03
reporterThomas Seliger
sourcehttps://www.exploit-db.com/download/21197/
titleBSCW 3.4/4.0 Insecure Default Installation Vulnerability