Vulnerabilities > CVE-2002-1242 - Unspecified vulnerability in Francisco Burzi PHP-Nuke 5.6
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
SQL injection vulnerability in PHP-Nuke before 6.0 allows remote authenticated users to modify the database and gain privileges via the "bio" argument to modules.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | PHP-Nuke 5.6 Modules.PHP SQL Injection Vulnerability. CVE-2002-1242 . Webapps exploit for php platform |
id | EDB-ID:21977 |
last seen | 2016-02-02 |
modified | 2002-11-01 |
published | 2002-11-01 |
reporter | kill9 |
source | https://www.exploit-db.com/download/21977/ |
title | PHP-Nuke 5.6 Modules.PHP SQL Injection Vulnerability |
Nessus
NASL family | CGI abuses |
NASL id | PHP_NUKE_INSTALLED.NASL |
description | The remote host is running a copy of PHP-Nuke. Given the insecurity history of this package, the Nessus team recommends that you do not use it but use something else instead, as security was clearly not in the mind of the persons who wrote it. The author of PHP-Nuke (Francisco Burzi) even started to rewrite the program from scratch, given the huge number of vulnerabilities |
last seen | 2020-06-02 |
modified | 2003-02-17 |
plugin id | 11236 |
published | 2003-02-17 |
reporter | This script is Copyright (C) 2003-2020 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/11236 |
title | PHP-Nuke Detection |
code |
|
References
- http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0051.html
- http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0051.html
- http://marc.info/?l=bugtraq&m=103616324103171&w=2
- http://marc.info/?l=bugtraq&m=103616324103171&w=2
- http://www.idefense.com/advisory/10.31.02c.txt
- http://www.idefense.com/advisory/10.31.02c.txt
- http://www.iss.net/security_center/static/10516.php
- http://www.iss.net/security_center/static/10516.php
- http://www.osvdb.org/6244
- http://www.osvdb.org/6244
- http://www.securityfocus.com/bid/6088
- http://www.securityfocus.com/bid/6088