CVE-2002-1800
HIGHPhprank - Cleartext Storage
Title source: ruleDescription
phpRank 1.8 stores the administrative password in plaintext on the server and in the "ap" cookie, which allows remote attackers to retrieve the administrative password.
Scores
CVSS v3
7.5
EPSS
0.0044
EPSS Percentile
62.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Classification
CWE
CWE-312
Status
draft
Affected Products (1)
phprank/phprank
Timeline
Published
Dec 31, 2002
Tracked Since
Feb 18, 2026