Unrated severityNVD Advisory· Published Oct 4, 2002· Updated Apr 16, 2026
CVE-2002-0918
CVE-2002-0918
Description
CGIScript.net csPassword.cgi leaks sensitive information such as the pathname of the server in debug messages that are presented when the script fails, which allows remote attackers to obtain the information via a "remove" option in the command parameter, which generates an error.
Affected products
1- cpe:2.3:a:cgiscript.net:cspassword:1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.iss.net/security_center/static/9221.phpnvdPatchVendor Advisory
- www.securityfocus.com/bid/4887nvdExploitPatchVendor Advisory
- online.securityfocus.com/archive/1/274727nvd
News mentions
0No linked articles in our index yet.