CVE
- Id
- 1052
- CVE No.
- CVE-1999-1072
- Status
- Candidate
- Description
- Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the world-readable Architext.conf authentication file and replaying the encrypted password in an HTTP request to AT-generated.cgi or AT-admin.cgi.
- Phase
- Proposed (20010912)
- Votes
- NOOP(3) Cole, Foat, Wall
- Comments