7.2
CVE-1999-1072
- EPSS 0.42%
- Veröffentlicht 30.11.1998 05:00:00
- Zuletzt bearbeitet 16.06.2026 21:49:39
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the world-readable Architext.conf authentication file and replaying the encrypted password in an HTTP request to AT-generated.cgi or AT-admin.cgi.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.42% | 0.334 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
http://marc.info/?l=bugtraq&m=91248445931140&w=2