CVE-2001-0372
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/06/2001
Last modified:
03/04/2025
Description
Akopia Interchange 4.5.3 through 4.6.3 installs demo stores with a default group account :backup with no password, which allows a remote attacker to gain administrative access via the demo stores (1) barry, (2) basic, or (3) construct.
Impact
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:akopia:akopia_interchange:*:*:*:*:*:*:*:* | 4.6.3 (including) | |
cpe:2.3:a:akopia:akopia_interchange:4.5.3:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://archives.neohapsis.com/archives/bugtraq/2001-03/0337.html
- http://lists.akopia.com/pipermail/interchange-announce/2001/000009.html
- http://www.securityfocus.com/bid/2499
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6273
- http://archives.neohapsis.com/archives/bugtraq/2001-03/0337.html
- http://lists.akopia.com/pipermail/interchange-announce/2001/000009.html
- http://www.securityfocus.com/bid/2499
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6273