Vulnerability Description
The admin.html file in MySimple News 1.0 stores its administrative password in plaintext, which allows remote attackers to gain unauthorized access to the web server by viewing the source of admin.html.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mysimplenews | Mysimplenews | 1.0 |
References
- http://www.iss.net/security_center/static/10298.php
- http://www.securityfocus.com/archive/1/293871
- http://www.securityfocus.com/bid/5866Exploit
- http://www.iss.net/security_center/static/10298.php
- http://www.securityfocus.com/archive/1/293871
- http://www.securityfocus.com/bid/5866Exploit
FAQ
What is CVE-2002-2143?
CVE-2002-2143 is a vulnerability with a CVSS score of 7.5 (HIGH). The admin.html file in MySimple News 1.0 stores its administrative password in plaintext, which allows remote attackers to gain unauthorized access to the web server by viewing the source of admin.htm...
How severe is CVE-2002-2143?
CVE-2002-2143 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-2143?
Check the references section above for vendor advisories and patch information. Affected products include: Mysimplenews Mysimplenews.