20020727 Easy Homepage Creator Vulnerabilitymailing list
http://archives.neohapsis.com/archives/bugtraq/2002-07/0350.html CVE-2002-1427
Ben Chivers Easy Homepage Creator 1.0 - File Modification
Record summary
CVE-2002-1427 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
The print_html_to_file function in edit.cgi for Easy Homepage Creator 1.0 does not check user credentials, which allows remote attackers to modify home pages of other users.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBBen Chivers Easy Homepage Creator 1.0 - File ModificationExploitDB exploitby Arek SuroboyoNot analyzed1 file
References
4easy-homepage-gain-access(9696)vdb entry
http://www.iss.net/security_center/static/9696.php 5340vdb entry
http://www.securityfocus.com/bid/5340 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-1427