PT-2002-1564 · Apache · Apache
Published
2002-08-12
·
Updated
2024-02-14
·
CVE-2002-0513
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
popper mod versions 1.2.1 and earlier
Description
The issue concerns the PHP administration script in popper mod, which relies on Apache .htaccess authentication. This allows remote attackers to gain privileges if the script is not properly configured by the administrator.
Recommendations
For versions 1.2.1 and earlier, ensure the PHP administration script is properly configured by the administrator to prevent unauthorized access. As a temporary workaround, consider restricting access to the administration script until a proper configuration can be implemented.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Apache