René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

119 lines
3.4 KiB
JSON

{
"id": "CVE-2002-0614",
"sourceIdentifier": "cve@mitre.org",
"published": "2002-06-18T04:00:00.000",
"lastModified": "2008-09-05T20:28:29.490",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "PHP-Survey 20000615 and earlier stores the global.inc file under the web root, which allows remote attackers to obtain sensitive information, including database credentials, if .inc files are not preprocessed by the server."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 5.0
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:php-survey:php-survey:2000-04-20:*:*:*:*:*:*:*",
"matchCriteriaId": "554DC73D-972F-4A19-A4D5-0FFBE3A62996"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:php-survey:php-survey:2000-04-21:*:*:*:*:*:*:*",
"matchCriteriaId": "AECF8789-EE25-4915-BD79-831EB5492998"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:php-survey:php-survey:2000-06-14:*:*:*:*:*:*:*",
"matchCriteriaId": "390FA997-483B-47D2-9453-ED2638E43569"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:php-survey:php-survey:2000-06-14b:*:*:*:*:*:*:*",
"matchCriteriaId": "60DA163D-E092-498B-B386-ED0F499E2386"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:php-survey:php-survey:2000-06-15:*:*:*:*:*:*:*",
"matchCriteriaId": "2D194B43-AC99-4F0D-9A3C-4D53755620CC"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:php-survey:php-survey:prebeta2000-03-27:*:*:*:*:*:*:*",
"matchCriteriaId": "F1D3E2A3-43BB-44EB-87C7-B056E985C7B6"
}
]
}
]
}
],
"references": [
{
"url": "http://archives.neohapsis.com/archives/bugtraq/2002-04/0383.html",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.iss.net/security_center/static/8950.php",
"source": "cve@mitre.org",
"tags": [
"Patch",
"Vendor Advisory"
]
},
{
"url": "http://www.securityfocus.com/bid/4612",
"source": "cve@mitre.org",
"tags": [
"Patch",
"Vendor Advisory"
]
}
]
}