7.2

CVE-2002-0096

The installation of Geeklog 1.3 creates an extra group_assignments record which is not properly deleted, which causes the first newly created user to be added to the GroupAdmin and UserAdmin groups, which could provide that user with administrative privileges that were not intended.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GeeklogGeeklog Version1.3
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.39% 0.308
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://geeklog.sourceforge.net/index.php?topic=Security
http://www.iss.net/security_center/static/7780.php
Patch
Vendor Advisory
http://www.securityfocus.com/archive/1/248367
Patch
Vendor Advisory
http://www.securityfocus.com/bid/3783
Patch
Vendor Advisory