Vulnerabilities > CVE-2002-0588 - Unspecified vulnerability in Steve Korbett Pvote
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN steve-korbett
exploit available
Summary
PVote before 1.9 does not authenticate users for restricted operations, which allows remote attackers to add or delete polls by modifying parameters to (1) add.php or (2) del.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Exploit-Db
description | PVote 1.0/1.5 Poll Content Manipulation Vulnerability. CVE-2002-0588. Webapps exploit for php platform |
id | EDB-ID:21391 |
last seen | 2016-02-02 |
modified | 2002-04-18 |
published | 2002-04-18 |
reporter | Daniel Nyström |
source | https://www.exploit-db.com/download/21391/ |
title | PVote 1.0/1.5 Poll Content Manipulation Vulnerability |
References
- http://online.securityfocus.com/archive/1/268231
- http://online.securityfocus.com/archive/1/268231
- http://orbit-net.net:8001/php/pvote/
- http://orbit-net.net:8001/php/pvote/
- http://www.iss.net/security_center/static/8877.php
- http://www.iss.net/security_center/static/8877.php
- http://www.securityfocus.com/bid/4540
- http://www.securityfocus.com/bid/4540