CVE-2000-1228: Medium severity Phorum Phorum vulnerability
Phorum 3.0.7 allows remote attackers to change the administrator password without authentication via an HTTP request for admin.php3 that sets step, option, confirm and newPssword variables.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2000-1228?
CVE-2000-1228 is classified as a high severity vulnerability due to its potential for unauthorized access by remote attackers.
How do I fix CVE-2000-1228?
To fix CVE-2000-1228, it is essential to upgrade Phorum to a later version that addresses this security issue.
Who is affected by CVE-2000-1228?
CVE-2000-1228 affects users of Phorum version 3.0.7, allowing remote password changes without authentication.
What are the implications of CVE-2000-1228?
CVE-2000-1228 allows remote attackers to gain control of the Phorum platform by changing the administrator password.
Can CVE-2000-1228 be exploited remotely?
Yes, CVE-2000-1228 can be exploited remotely, making it critical to secure systems running the vulnerable version.