CVE-2000-1023 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 8.6% (pctl 95)
Patch early
A public exploit exists.
Description
The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers to modify domain name information via the nsManager.cgi CGI program.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 8.64% — more likely to be exploited than 95% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2000-12-11 |
| Last modified | 2026-09-23 |
Affected (1)
| Vendor | Product |
|---|---|
| alabanza | control panel |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Alabanza Control Panel 3.0 - Domain Modification | 2000-09-24 |
References
→ the Explorer · watch your stack · NVD