First published: Sat Aug 31 2002(Updated: )
The library feature for Adobe Content Server 3.0 allows a remote attacker to check out an eBook even when the maximum number of loans is exceeded by accessing the "Add to bookbag" feature when the server reports that no more copies are available.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Adobe Content Server | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1020 is considered a medium severity vulnerability due to its potential for exploitation by remote attackers.
To fix CVE-2002-1020, upgrade to a version of Adobe Content Server that addresses this vulnerability.
CVE-2002-1020 allows an attacker to check out an eBook even when the maximum number of loans is exceeded.
Adobe Content Server version 3.0 is affected by CVE-2002-1020.
There are no documented workarounds for CVE-2002-1020; the only resolution is to upgrade the affected software.