{
    "id": "CVE-2002-2200",
    "published": "2002-12-31 05:00:00",
    "last_modified": "2026-06-16 22:00:49",
    "cvss_score": "7.5",
    "cvss_severity": "HIGH",
    "cvss_version": "2.0",
    "cvss_vector": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
    "cwe": null,
    "description": "Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP files via the \"subpath\" variablein (1) entete.php, (2) enteteacceuil.php, (3) index.php, or (4) newtopic.php.",
    "epss_score": "0.07125",
    "epss_percentile": "0.94076",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 1,
    "updated_at": "2026-10-05 18:17:03",
    "priority": {
        "rank": 2,
        "label": "Patch early",
        "why": "A public exploit exists."
    },
    "products": [
        {
            "vendor": "benjamin_lefevre",
            "product": "dobermann_forum"
        }
    ],
    "kev_detail": null,
    "exploits": [
        {
            "source": "exploit-db",
            "ref_id": "21967",
            "title": "Benjamin Lefevre Dobermann Forum 0.x - 'entete.php?subpath' Remote File Inclusion",
            "date": "2002-10-28",
            "url": "https://www.exploit-db.com/exploits/21967"
        },
        {
            "source": "exploit-db",
            "ref_id": "21968",
            "title": "Benjamin Lefevre Dobermann Forum 0.x - 'enteteacceuil.php?subpath' Remote File Inclusion",
            "date": "2002-10-28",
            "url": "https://www.exploit-db.com/exploits/21968"
        },
        {
            "source": "exploit-db",
            "ref_id": "21969",
            "title": "Benjamin Lefevre Dobermann Forum 0.x - 'index.php?subpath' Remote File Inclusion",
            "date": "2002-10-28",
            "url": "https://www.exploit-db.com/exploits/21969"
        },
        {
            "source": "exploit-db",
            "ref_id": "21970",
            "title": "Benjamin Lefevre Dobermann Forum 0.x - 'newtopic.php?subpath' Remote File Inclusion",
            "date": "2002-10-28",
            "url": "https://www.exploit-db.com/exploits/21970"
        }
    ],
    "refs_list": [
        "http://seclists.org/lists/bugtraq/2002/Oct/0397.html",
        "http://www.iss.net/security_center/static/10492.php",
        "http://www.securityfocus.com/bid/6057",
        "http://seclists.org/lists/bugtraq/2002/Oct/0397.html",
        "http://www.iss.net/security_center/static/10492.php",
        "http://www.securityfocus.com/bid/6057"
    ]
}