Vulnerabilities > CVE-2002-0267 - Unspecified vulnerability in Sips
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
preferences.php in Simple Internet Publishing System (SIPS) before 0.3.1 allows remote attackers to gain administrative privileges via a linebreak in the "theme" field followed by the Status::admin command, which causes the Status line to be entered into the password file.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
References
- http://marc.info/?l=bugtraq&m=101363233905645&w=2
- http://marc.info/?l=bugtraq&m=101363233905645&w=2
- http://sips.sourceforge.net/adminvul.html
- http://sips.sourceforge.net/adminvul.html
- http://www.iss.net/security_center/static/8193.php
- http://www.iss.net/security_center/static/8193.php
- http://www.securityfocus.com/bid/4097
- http://www.securityfocus.com/bid/4097