5
CVE-2004-2578
- EPSS 0.4%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
phpGroupWare before 0.9.16.002 transmits the (1) header admin and (2) setup passwords in plaintext via cookies, which allows remote attackers to sniff passwords.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Phpgroupware ≫ Phpgroupware Version0.9.1
Phpgroupware ≫ Phpgroupware Version0.9.2
Phpgroupware ≫ Phpgroupware Version0.9.3
Phpgroupware ≫ Phpgroupware Version0.9.4
Phpgroupware ≫ Phpgroupware Version0.9.5
Phpgroupware ≫ Phpgroupware Version0.9.6
Phpgroupware ≫ Phpgroupware Version0.9.7
Phpgroupware ≫ Phpgroupware Version0.9.8
Phpgroupware ≫ Phpgroupware Version0.9.9
Phpgroupware ≫ Phpgroupware Version0.9.9_pl1
Phpgroupware ≫ Phpgroupware Version0.9.10
Phpgroupware ≫ Phpgroupware Version0.9.12
Phpgroupware ≫ Phpgroupware Version0.9.13
Phpgroupware ≫ Phpgroupware Version0.9.14.003
Phpgroupware ≫ Phpgroupware Version0.9.14.005
Phpgroupware ≫ Phpgroupware Version0.9.14.006
Phpgroupware ≫ Phpgroupware Version0.9.14.007
Phpgroupware ≫ Phpgroupware Version0.9.16.000
Phpgroupware ≫ Phpgroupware Version0.9.16.001
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.4% | 0.58 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|