PT-2001-1369 · Unknown · Ultraboard 2000

Published

2001-02-14

·

Updated

2016-10-18

·

CVE-2001-0135

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions: Ultraboard 2000 version 2.11
Description: The default installation of Ultraboard 2000 creates certain directories with world-writeable permissions. This could allow local users to modify sensitive information or possibly insert and execute CGI programs.
Recommendations: For Ultraboard 2000 version 2.11, change the permissions of the Skins, Database, and Backups directories to prevent world-writeable access, restricting modifications to authorized users only.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2001-0135

Affected Products

Ultraboard 2000