VULNERABILITY INTELLIGENCE

CVE-2002-0267

CVSS score10 NONE
EPSS probability2.61%
CISA KEVNot currently listed
Published2002-05-29
Last modified2026-06-16
CVSS vectorAV:N/AC:L/Au:N/C:C/I:C/A:C

Description

preferences.php in Simple Internet Publishing System (SIPS) before 0.3.1 allows remote attackers to gain administrative privileges via a linebreak in the "theme" field followed by the Status::admin command, which causes the Status line to be entered into the password file.

Weakness classification

  • nvd@nist.gov: NVD-CWE-Other

Primary references