CVE-2002-2143

MySimple News 1.0 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2002-2143. PoCs published by frog.

AI-analyzed exploit summary This is a writeup describing an information disclosure vulnerability in MySimpleNews where the administrative password is stored in clear text within a remotely accessible HTML file. The exploit details how an attacker can retrieve the password by viewing the source code of admin.html.

Description

The admin.html file in MySimple News 1.0 stores its administrative password in plaintext, which allows remote attackers to gain unauthorized access to the web server by viewing the source of admin.html.

Exploits (1)

exploitdb WRITEUP VERIFIED
by frog · textwebappsphp
https://www.exploit-db.com/exploits/21901

This is a writeup describing an information disclosure vulnerability in MySimpleNews where the administrative password is stored in clear text within a remotely accessible HTML file. The exploit details how an attacker can retrieve the password by viewing the source code of admin.html.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: MySimpleNews (version not specified)
No auth needed
Prerequisites: Network access to the target web server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/5866
Third Party Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/10298.php
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/293871

Scores

EPSS 0.0272
EPSS Percentile 84.1%

Details

Status published
Products (1)
mysimplenews/mysimplenews 1.0
Published Dec 31, 2002
Tracked Since Feb 18, 2026