Vulnerabilities > CVE-2002-2143 - Remotely Readable Administrator Password vulnerability in Mysimplenews 1.0

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
mysimplenews
exploit available

Summary

The admin.html file in MySimple News 1.0 stores its administrative password in plaintext, which allows remote attackers to gain unauthorized access to the web server by viewing the source of admin.html.

Vulnerable Configurations

Part Description Count
Application
Mysimplenews
1

Exploit-Db

descriptionMySimpleNews 1.0 Remotely Readable Administrator Password Vulnerability. CVE-2002-2143. Webapps exploit for php platform
idEDB-ID:21901
last seen2016-02-02
modified2002-10-02
published2002-10-02
reporterfrog
sourcehttps://www.exploit-db.com/download/21901/
titleMySimpleNews 1.0 - Remotely Readable Administrator Password Vulnerability