CVE-2001-0321: Medium severity Francisco Burzi PHP-Nuke vulnerability
Published May 3, 2001
·Updated
opendir.php script in PHP-Nuke allows remote attackers to read arbitrary files by specifying the filename as an argument to the requesturl parameter.
Affected Software
1 affected component
Francisco Burzi PHP-Nuke=8.0_final
Event History
May 3, 2001
CVE Published
04:00 AM
Mar 9, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0321?
CVE-2001-0321 is classified as a high severity vulnerability due to its potential to allow unauthorized file access.
2
How do I fix CVE-2001-0321?
To fix CVE-2001-0321, upgrade PHP-Nuke to the latest version that does not contain this vulnerability.
3
What are the risks associated with CVE-2001-0321?
Risks associated with CVE-2001-0321 include unauthorized access to sensitive files on the server.
4
Which versions of PHP-Nuke are affected by CVE-2001-0321?
CVE-2001-0321 specifically affects PHP-Nuke version 8.0_final.
5
Can CVE-2001-0321 be exploited remotely?
Yes, CVE-2001-0321 can be exploited remotely by attackers who manipulate request parameters.