CVE-2002-1800

HIGH

Phprank - Cleartext Storage

Title source: rule

Description

phpRank 1.8 stores the administrative password in plaintext on the server and in the "ap" cookie, which allows remote attackers to retrieve the administrative password.

Scores

CVSS v3 7.5
EPSS 0.0044
EPSS Percentile 62.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-312
Status draft

Affected Products (1)

phprank/phprank

Timeline

Published Dec 31, 2002
Tracked Since Feb 18, 2026