CVE

Id
5794  
CVE No.
CVE-2002-1410  
Status
Candidate  
Description
Easy Guestbook CGI programs do not authenticate the administrator, which allows remote attackers to (1) delete entries via direct access of admin.cgi, or (2) reconfigure Guestbook via direct access of config.cgi.  
Phase
Proposed (20030317)  
Votes
ACCEPT(1) Cole | MODIFY(1) Baker | NOOP(2) Cox, Wall  
Comments
Baker> ADD: http://bosen.net/advisories/aresu-adv.002.txt