VulnerabilityModified
CVE-2002-1560
index.php in gBook 1.4 allows remote attackers to bypass authentication and gain administrative privileges by setting the login parameter to true.
HIGH 10.0EPSS 10.3%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 10.3%, higher than 95% of all known CVEs. Patch or mitigate before the next change window.
Description
index.php in gBook 1.4 allows remote attackers to bypass authentication and gain administrative privileges by setting the login parameter to true.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 10.32% probability · 95th percentile
- CISA KEV
- Not listed
- Affected
- martin bauer/gbook
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2002-10/0328.htmlExploit, Patch, Vendor Advisory
- http://www.iss.net/security_center/static/10455.phpVendor Advisory
- http://www.securityfocus.com/bid/6033Exploit, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-10/0328.htmlExploit, Patch, Vendor Advisory
- http://www.iss.net/security_center/static/10455.phpVendor Advisory
- http://www.securityfocus.com/bid/6033Exploit, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.