First published: Sat Dec 08 2001(Updated: )
Kebi WebMail allows remote attackers to access the administrator menu and gain privileges via the /a/ hidden directory, which is installed under the web document root.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Invision Community | =1.0_academy | |
Invision Community | =1.0_enterprise |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0953 is classified as a remote privilege escalation vulnerability.
To fix CVE-2001-0953, restrict access to the /a/ hidden directory and implement proper authentication mechanisms.
CVE-2001-0953 affects Kebi Community versions 1.0_academy and 1.0_enterprise.
An attacker can exploit CVE-2001-0953 by accessing the /a/ hidden directory to gain unauthorized privileges.
CVE-2001-0953 can lead to unauthorized access to administrative functions, posing a significant risk to the application's security.