VYPR
Unrated severityNVD Advisory· Published Dec 31, 2002· Updated Apr 16, 2026

CVE-2002-2342

CVE-2002-2342

Description

Bannermatic 1, 2, and 3 stores the (1) ban.log, (2) ban.bak, (3) ban.dat and (4) banmat.pwd data files under the web document root with insufficient access control, which allows attackers to obtain sensitive information via a direct request for the files.

Affected products

3
  • cpe:2.3:a:joe_depasquale:bannermatic:1.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:joe_depasquale:bannermatic:1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:joe_depasquale:bannermatic:2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:joe_depasquale:bannermatic:3.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.