5

CVE-2003-1454

Invision Power Services Invision Board 1.0 through 1.1.1, when a forum is password protected, stores the administrator password in a cookie in plaintext, which could allow remote attackers to gain access.

Data is provided by the National Vulnerability Database (NVD)
Invision Power ServicesInvision Board Version1.0.1
   LinuxLinux Kernel
   MicrosoftAll Windows
   UnixUnix
Invision Power ServicesInvision Board Version1.1.1
   LinuxLinux Kernel
   MicrosoftAll Windows
   UnixUnix
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.27% 0.478
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N