First published: Tue Dec 31 2002(Updated: )
The Czech edition of Software602's Web Server before 2002.0.02.0916 allows remote attackers to gain administrator privileges via direct HTTP requests to the /admin/ directory, which is not password protected.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Software602 602pro Lan Suite | =2002 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-2152 is considered high severity due to the possibility of remote attackers gaining administrator privileges.
To fix CVE-2002-2152, upgrade to Software602's Web Server version 2002.0.02.0916 or later, which includes proper access controls.
CVE-2002-2152 affects the Czech edition of Software602's Web Server prior to version 2002.0.02.0916.
Yes, CVE-2002-2152 can be exploited remotely through unauthorized HTTP requests to the /admin/ directory.
The impact of exploiting CVE-2002-2152 includes unauthorized access and control over the web server as an administrator.