MEDIUM · 6.4

CVE-2002-1084

The VerifyLogin function in ezContents 1.41 and earlier does not properly halt program execution if a user fails to log in properly, which allows remote attackers to modify and view restricted informa...

Vulnerability Description

The VerifyLogin function in ezContents 1.41 and earlier does not properly halt program execution if a user fails to log in properly, which allows remote attackers to modify and view restricted information via HTTP POST requests.

CVSS Score

6.4

MEDIUM

AV:N/AC:L/Au:N/C:P/I:P/A:N
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
VisualshapersEzcontents<= 1.41

References

FAQ

What is CVE-2002-1084?

CVE-2002-1084 is a vulnerability with a CVSS score of 6.4 (MEDIUM). The VerifyLogin function in ezContents 1.41 and earlier does not properly halt program execution if a user fails to log in properly, which allows remote attackers to modify and view restricted informa...

How severe is CVE-2002-1084?

CVE-2002-1084 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2002-1084?

Check the references section above for vendor advisories and patch information. Affected products include: Visualshapers Ezcontents.