CVE

Id
2592  
CVE No.
CVE-2000-1023  
Status
Candidate  
Description
The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers to modify domain name information via the nsManager.cgi CGI program.  
Phase
Proposed (20001129)  
Votes
ACCEPT(2) Collins, Mell | NOOP(2) Cole, Wall | REJECT(1) Baker  
Comments
Baker> I agree with Steve that this appears to be an on-line applet, accessible from their server only. | CHANGE> [Baker changed vote from REVIEWING to REJECT]