CVE-2002-2046

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2002
Last modified:
20/11/2024

Description

x_news.php in X-News (x_news) 1.1 and earlier allows remote attackers to gain administrative privileges by stealing and replaying the md5_password cookie.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:xqus:x-news:1.1:*:*:*:*:*:*:*