CVE-2002-2218

CRLF injection vulnerability in the setUserValue function in sipssys/code/site.inc.php in Haakon Nilsen simple, integrated publishing system (SIPS) before 20020209 has unknown impact, possibly gaining privileges or modifying critical configuration, via a CRLF sequence in a key value.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sips:sips:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:43

Type Values Removed Values Added
References () http://sips.cvs.sourceforge.net/sips/sips/sipssys/code/site.inc.php?r1=1.13&r2=1.14 - () http://sips.cvs.sourceforge.net/sips/sips/sipssys/code/site.inc.php?r1=1.13&r2=1.14 -
References () http://sips.cvs.sourceforge.net/sips/sips/sipssys/code/site.inc.php?view=log - () http://sips.cvs.sourceforge.net/sips/sips/sipssys/code/site.inc.php?view=log -

Information

Published : 2002-12-31 05:00

Updated : 2024-11-20 23:43


NVD link : CVE-2002-2218

Mitre link : CVE-2002-2218

CVE.ORG link : CVE-2002-2218


JSON object : View

Products Affected

sips

  • sips