The admin.html file in StepWeb Search Engine (SWS) 2.5 stores passwords in links to manager.pl, which allows remote attackers who can access the admin.html file to gain administrative privileges to SWS.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2002-06-11T04:00:00

Updated: 2024-08-08T02:49:28.915Z

Reserved: 2002-06-07T00:00:00

Link: CVE-2002-0537

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2002-07-03T04:00:00.000

Modified: 2008-09-05T20:28:17.040

Link: CVE-2002-0537

cve-icon Redhat

No data.