VulnerabilityModified
CVE-2002-1020
The library feature for Adobe Content Server 3.0 allows a remote attacker to check out an eBook even when the maximum number of loans is exceeded by accessing the "Add to bookbag" feature when the server reports that no more copies are available.
MEDIUM 5.0EPSS 2.27%
Does this matter?
Lower severity and a low EPSS score (2.27%). Track it; it rarely justifies an emergency change on its own.
Description
The library feature for Adobe Content Server 3.0 allows a remote attacker to check out an eBook even when the maximum number of loans is exceeded by accessing the "Add to bookbag" feature when the server reports that no more copies are available.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 2.27% probability · 82th percentile
- CISA KEV
- Not listed
- Affected
- adobe/adobe content server
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0020.htmlVendor Advisory
- http://marc.info/?l=vuln-dev&m=102649215618643&w=2
- http://marc.info/?l=vuln-dev&m=102650064028760&w=2
- http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0020.htmlVendor Advisory
- http://marc.info/?l=vuln-dev&m=102649215618643&w=2
- http://marc.info/?l=vuln-dev&m=102650064028760&w=2
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.