6.4
CVE-2003-1176
- EPSS 7.18%
- Veröffentlicht 31.12.2003 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:03:39
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
post_message_form.asp in Web Wiz Forums 6.34 through 7.5, when quote mode is used, allows remote attackers to read or write to private forums by modifying the FID (forum ID) parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bdc Enterprises ≫ Web Wiz Forums Version6.34
Bdc Enterprises ≫ Web Wiz Forums Version7.01
Bdc Enterprises ≫ Web Wiz Forums Version7.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 7.18% | 0.935 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.4 | 10 | 4.9 |
AV:N/AC:L/Au:N/C:P/I:P/A:N
|
http://secunia.com/advisories/10137
http://securitytracker.com/id?1008100
http://www.osvdb.org/2768
http://www.securityfocus.com/archive/1/343175
http://www.securityfocus.com/archive/1/343314
http://www.securityfocus.com/bid/8957
https://exchange.xforce.ibmcloud.com/vulnerabilities/13581