Back to Database
Status published
Medium
CVE-2002-1422
admbrowse.php in FUDforum before 2.2.0 allows remote attackers to create...
Vulnerability Description
admbrowse.php in FUDforum before 2.2.0 allows remote attackers to create or delete files via URL-encoded pathnames in the cur and dest parameters.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2002-1422
Credits & Attribution
No credits recorded in the NVD database.
References
More from ilia alshanetsky
View All →CVE-2005-2781
The Avatar upload feature in FUD Forum before 2.7.0 does...
High
7.5
CVE-2005-2600
FUDForum 2.6.15 with "Tree View" enabled, as used in other...
Medium
5
CVE-2002-1423
tmp_view.php in FUDforum before 2.2.0 allows remote attackers to read...
Medium
5
CVE-2002-1421
SQL injection vulnerabilities in FUDforum before 2.2.0 allow remote attackers...
High
7.5
Affected Vendor
ilia alshanetsky
View all reports →Affected Software
fudforum
Vulnerable Versions:
1.2.8, 1.9.8, 2.0.2
Timeline
Official Publish:
March 18th, 2003
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.