Unrated severityNVD Advisory· Published Nov 23, 2004· Updated Apr 16, 2026
CVE-2004-0261
CVE-2004-0261
Description
oj.cgi in OpenJournal 2.0 through 2.0.5 allows remote attackers to bypass authentication and access the control panel via a 0 in the uid parameter.
Affected products
6cpe:2.3:a:openjournal:openjournal:2.0:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:openjournal:openjournal:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:openjournal:openjournal:2.0_1:*:*:*:*:*:*:*
- cpe:2.3:a:openjournal:openjournal:2.0_2:*:*:*:*:*:*:*
- cpe:2.3:a:openjournal:openjournal:2.0_3:*:*:*:*:*:*:*
- cpe:2.3:a:openjournal:openjournal:2.0_4:*:*:*:*:*:*:*
- cpe:2.3:a:openjournal:openjournal:2.0_5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.securityfocus.com/bid/9598nvdExploitPatchVendor Advisory
- marc.infonvd
- www.grohol.com/downloads/oj/latest/changelog.txtnvd
- www.osvdb.org/3872nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/15069nvd
News mentions
0No linked articles in our index yet.