VulnerabilityModified
CVE-2001-1290
admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify the configuration, gain privileges, and execute arbitrary Perl code via the table_width parameter.
MEDIUM 5.0EPSS 6.49%
Does this matter?
Lower severity and a low EPSS score (6.49%). Track it; it rarely justifies an emergency change on its own.
Description
admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify the configuration, gain privileges, and execute arbitrary Perl code via the table_width parameter.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 6.49% probability · 93th percentile
- CISA KEV
- Not listed
- Affected
- active web suite technologies/active classifieds
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2001-06/0386.html
- http://www.osvdb.org/12326
- http://www.securityfocus.com/bid/2942
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6754
- http://archives.neohapsis.com/archives/bugtraq/2001-06/0386.html
- http://www.osvdb.org/12326
- http://www.securityfocus.com/bid/2942
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6754
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.