Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2001-0372

EPSS 1.55% · P82
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2001-0372

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Akopia Interchange 4.5.3 through 4.6.3 installs demo stores with a default group account :backup with no password, which allows a remote attacker to gain administrative access via the demo stores (1) barry, (2) basic, or (3) construct.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Akopia Interchange电子商务服务器示例文件的漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
CVE(CAN) ID: CAN-2001-0372 Akopia Interchange电子商务服务器(http://www.akopia.com/product.html)的组件中存在一个漏洞。Interchange的某些版本在发行时带有电子商务商店的示例程序,用来演示该软件的功能。这些示例文件包含一个配置错误,使得未经认证的远程用户可以连接到演示商店的基于Web的管理界面。恶意的用户可以通过这个界面来读取或篡改客户数据、产品清单以及订单信息。 <* 来源:Jud Harris (jud-lists@
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2001-0372

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2001-0372

登录查看更多情报信息。

Same Patch Batch · n/a · 2001-05-24 · 91 CVEs total

CVE-2001-0437DCForum 'AZ'字段远程命令执行漏洞
CVE-2001-0433Savant缓冲区溢出漏洞
CVE-2001-0431iPlanet Web Server Enterprise Edition漏洞
CVE-2001-0424FreeBSD BubbleMon特权提升漏洞
CVE-2001-0421Solaris FTP Core Dump文件泄漏用户口令散列漏洞
CVE-2001-0420Web TalkBack.cgi方式目录遍历漏洞
CVE-2001-0419Oracle Application Server ndwfn4.so远程缓冲区溢出漏洞
CVE-2001-0418NCM Content Management System content.pl输入验证漏洞
CVE-2001-0425Adcycle AdLibrary.pm会话访问漏洞
CVE-2001-0436DCForum 'AZ'字段远程命令执行漏洞
CVE-2001-0435PGP分裂关键机制漏洞
CVE-2001-0438Mac OS X漏洞
CVE-2001-0441SLRN超长头缓冲区溢出漏洞
CVE-2001-0443QVT/Net服务拒绝漏洞
CVE-2001-0446IBM WCS (WebSphere Commerce Suite)漏洞
CVE-2001-0447602Pro Lan Suite MS-Dos设备名称服务拒绝漏洞
CVE-2001-0448602Pro LAN SUITE Web配置服务器服务拒绝漏洞
CVE-2001-0450Transsoft FTP Broker目录遍历漏洞
CVE-2001-0451INDEXU权限许可和访问控制漏洞
CVE-2001-0452BRS WebWeaver FTP 根目录物理路径泄露

Showing top 20 of 91 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2001-0372

No comments yet


Leave a comment