Vulnerabilities > CVE-2002-0589 - Unspecified vulnerability in Steve Korbett Pvote
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN steve-korbett
exploit available
Summary
PVote before 1.9 allows remote attackers to change the administrative password and gain privileges by directly calling ch_info.php with the newpass and confirm parameters both set to the new password.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Exploit-Db
description | PVote 1.0/1.5 Unauthorized Administrative Password Change Vulnerability. CVE-2002-0589. Webapps exploit for php platform |
id | EDB-ID:21397 |
last seen | 2016-02-02 |
modified | 2002-04-18 |
published | 2002-04-18 |
reporter | Daniel Nyström |
source | https://www.exploit-db.com/download/21397/ |
title | PVote 1.0/1.5 Unauthorized Administrative Password Change Vulnerability |
References
- http://online.securityfocus.com/archive/1/268231
- http://online.securityfocus.com/archive/1/268231
- http://orbit-net.net:8001/php/pvote/
- http://orbit-net.net:8001/php/pvote/
- http://www.iss.net/security_center/static/8878.php
- http://www.iss.net/security_center/static/8878.php
- http://www.securityfocus.com/bid/4541
- http://www.securityfocus.com/bid/4541