Vulnerabilities > CVE-2002-0588 - Unspecified vulnerability in Steve Korbett Pvote

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
steve-korbett
exploit available

Summary

PVote before 1.9 does not authenticate users for restricted operations, which allows remote attackers to add or delete polls by modifying parameters to (1) add.php or (2) del.php.

Exploit-Db

descriptionPVote 1.0/1.5 Poll Content Manipulation Vulnerability. CVE-2002-0588. Webapps exploit for php platform
idEDB-ID:21391
last seen2016-02-02
modified2002-04-18
published2002-04-18
reporterDaniel Nyström
sourcehttps://www.exploit-db.com/download/21391/
titlePVote 1.0/1.5 Poll Content Manipulation Vulnerability