CVE-2002-1432
Published Apr 11, 2003
Last updated 16 years ago
Overview
- Description
- MidiCart stores the midicart.mdb database file under the Web document root, which allows remote attackers to steal sensitive information by directly requesting the database.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:coxco_support:a-cart:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "391B12E6-EEBF-4FE7-B04D-1070511230EA" }, { "criteria": "cpe:2.3:a:coxco_support:metacart:2.sql:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9045F4F1-87EC-4911-A5C5-2F33FDFCF1CC" }, { "criteria": "cpe:2.3:a:coxco_support:midicart_asp:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "89A40FA1-8D3F-48D3-96A5-3C38D54659A3" }, { "criteria": "cpe:2.3:a:coxco_support:midicart_asp_maxi:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CD94726E-FCF7-41AA-9792-32D2C836F0D9" }, { "criteria": "cpe:2.3:a:coxco_support:midicart_asp_plus:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F24531DB-5A27-450A-B6FA-7E015039BF5C" }, { "criteria": "cpe:2.3:a:coxco_support:salescart-pro:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D7EA180C-436C-4607-8D07-A1E26B50BE14" }, { "criteria": "cpe:2.3:a:coxco_support:salescart-std:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "373E8A60-BEE7-4A70-9A65-1A0EC04F3422" } ], "operator": "OR" } ] } ]