10
CVE-2001-0972
- EPSS 3.82%
- Veröffentlicht 31.08.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:55:19
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Surf-Net ASP Forum before 2.30 uses easily guessable cookies based on the UserID, which allows remote attackers to gain administrative privileges by calculating the value of the admin cookie (UserID 1), i.e. "0888888."
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.82% | 0.887 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
http://marc.info/?l=bugtraq&m=99834088223352&w=2
http://www.securityfocus.com/bid/3210
https://exchange.xforce.ibmcloud.com/vulnerabilities/7011