CVE-2002-0579

Publication date

2002-06-11 04:00:00

Family

mitre

State

PUBLISHED

Description

WorkforceROI Xpede 4.1 allows remote attackers to gain privileges as an Xpede administrator via a direct HTTP request to the /admin/adminproc.asp script, which does not prompt for a password.