peter bassill · operator
$ cve CVE-2000-1023 JSON

CVE-2000-1023 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 8.6% (pctl 95)

Patch early

A public exploit exists.

Description

The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers to modify domain name information via the nsManager.cgi CGI program.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS8.64% — more likely to be exploited than 95% of all CVEs
On CISA KEVno
Public exploityes
Published2000-12-11
Last modified2026-09-23

Affected (1)

VendorProduct
alabanzacontrol panel

Public exploits

SourceTitleDate
exploit-dbAlabanza Control Panel 3.0 - Domain Modification2000-09-24

References

→ the Explorer  ·  watch your stack  ·  NVD