peter bassill · operator
$ cve CVE-2004-1567 JSON

CVE-2004-1567 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 6.8% (pctl 94)

Patch early

A public exploit exists.

Description

profile.php in Silent Storm Portal 2.1 and 2.2 allows remote attackers to gain privileges by setting the mail parameter to 1, which is the value for an administrator.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS6.77% — more likely to be exploited than 94% of all CVEs
On CISA KEVno
Public exploityes
Published2004-12-31
Last modified2026-06-16

Affected (1)

VendorProduct
silent-stormsilent-storm portal

Public exploits

SourceTitleDate
exploit-dbSilent Storm Portal - Multiple Vulnerabilities2004-09-30

References

→ the Explorer  ·  watch your stack  ·  NVD