CVE-2002-1022: High severity Working Resources Inc. BadBlue vulnerability
Published Aug 31, 2002
·Updated
BadBlue server stores passwords in plaintext in the ext.ini file, which could allow local and possibly remote attackers to gain privileges.
Affected Software
2 affected components
Working Resources Inc. BadBlue=1.7.3_personal
Working Resources Inc. BadBlue=1.7.3_enterprise
Event History
Aug 31, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1022?
CVE-2002-1022 is considered a high severity vulnerability due to the potential for local and remote privilege escalation.
2
How do I fix CVE-2002-1022?
To fix CVE-2002-1022, ensure that the ext.ini file is not accessible to unauthorized users and consider using a secure password management solution.
3
Who is affected by CVE-2002-1022?
CVE-2002-1022 affects users of BadBlue versions 1.7.3 personal and enterprise.
4
What risks does CVE-2002-1022 present?
CVE-2002-1022 presents risks such as unauthorized access to sensitive information and potential control over the affected system.
5
Can CVE-2002-1022 be exploited remotely?
Yes, CVE-2002-1022 can be exploited remotely if proper security measures are not in place.