CVE-2001-1290 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 6.5% (pctl 94)
Patch early
A public exploit exists.
Description
admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify the configuration, gain privileges, and execute arbitrary Perl code via the table_width parameter.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
| EPSS | 6.49% — more likely to be exploited than 94% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2001-06-28 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| active web suite technologies | active classifieds |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Active Classifieds 1.0 - Arbitrary Code Execution | 2001-06-28 |
References
- http://archives.neohapsis.com/archives/bugtraq/2001-06/0386.html
- http://www.osvdb.org/12326
- http://www.securityfocus.com/bid/2942
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6754
- http://archives.neohapsis.com/archives/bugtraq/2001-06/0386.html
- http://www.osvdb.org/12326
- http://www.securityfocus.com/bid/2942
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6754
→ the Explorer · watch your stack · NVD