peter bassill · operator
$ cve CVE-2002-2190 JSON

CVE-2002-2190 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 6.7% (pctl 94)

Patch early

A public exploit exists.

Description

ArtsCore Studios CuteCast Forum 1.2 stores passwords in plaintext under the web document root, which allows remote attackers to obtain the passwords via an HTTP request to a .user file.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS6.69% — more likely to be exploited than 94% of all CVEs
On CISA KEVno
Public exploityes
Published2002-12-31
Last modified2026-06-16

Affected (1)

VendorProduct
artscore studioscutecast forum

Public exploits

SourceTitleDate
exploit-dbCuteCast 1.2 - User Credential Disclosure2002-11-07

References

→ the Explorer  ·  watch your stack  ·  NVD